CVE-2006-4096

Description

BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via a flood of recursive queries, which cause an INSIST failure when the response is received after the recursion queue is empty.

Risk Information

Base Score
7.5
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
19.584

Associated Vulnerability

VulnerabilityOS Platform
Update bind 9.3.2 to latest versionWindows
Multiple Vulnerabilities are affected in BIND 9.3.0Windows
Multiple Vulnerabilities are affected in BIND 9.3.2Windows
Multiple Vulnerabilities are affected in BIND 9.2.0Windows
Multiple Vulnerabilities are affected in BIND 9.2.1Windows
Multiple Vulnerabilities are affected in BIND 9.2.2Windows
Multiple Vulnerabilities are affected in BIND 9.2.3Windows
Multiple Vulnerabilities are affected in BIND 9.3Windows
Multiple Vulnerabilities are affected in BIND 9.3.1Windows
Multiple Vulnerabilities are affected in BIND 9.2.6Windows
Multiple Vulnerabilities are affected in BIND 9.2.4Windows
Multiple Vulnerabilities are affected in BIND 9.2.5Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234