CVE-2009-0025

Description

BIND 9.6.0, 9.5.1, 9.5.0, 9.4.3, and earlier does not properly check the return value from the OpenSSL DSA_verify function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.

Risk Information

Base Score
7.5
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
EPSS Score
Exploitation Probability
1.144

Associated Vulnerability

VulnerabilityOS Platform
Update bind 9.6.0 to latest versionWindows
Multiple Vulnerabilities are affected in BIND 9.4.0Windows
Multiple Vulnerabilities are affected in BIND 9.1.2Windows
Multiple Vulnerabilities are affected in BIND 9.0Windows
Multiple Vulnerabilities are affected in BIND 9.1Windows
Multiple Vulnerabilities are affected in BIND 9.1.1Windows
Multiple Vulnerabilities are affected in BIND 9.1.3Windows
Multiple Vulnerabilities are affected in BIND 9.0.1Windows
Multiple Vulnerabilities are affected in BIND 9.2.0Windows
Multiple Vulnerabilities are affected in BIND 9.2.1Windows
Multiple Vulnerabilities are affected in BIND 9.2.2Windows
Multiple Vulnerabilities are affected in BIND 9.2.3Windows
Multiple Vulnerabilities are affected in BIND 9.2.6Windows
Multiple Vulnerabilities are affected in BIND 9.2.4Windows
Multiple Vulnerabilities are affected in BIND 9.2.5Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.5.0Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc4Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc5Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc6Windows
Multiple Vulnerabilities are affected in BIND 9.0.1.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.0.1.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.1.0.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc4Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc5Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc6Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc7Windows
Multiple Vulnerabilities are affected in BIND 9.1.2.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.1.3.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.1.3.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.1.3.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.a1Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.a2Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.a3Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.b1Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.b2Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc10Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc4Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc5Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc6Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc7Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc8Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc9Windows
Multiple Vulnerabilities are affected in BIND 9.2.1.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.2.1.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.2.2.p2Windows
Multiple Vulnerabilities are affected in BIND 9.2.2.p3Windows
Multiple Vulnerabilities are affected in BIND 9.2.2.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.2.3.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.2.3.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.2.3.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.2.3.rc4Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc4Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc5Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc6Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc7Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc8Windows
Multiple Vulnerabilities are affected in BIND 9.2.5.b2Windows
Multiple Vulnerabilities are affected in BIND 9.2.5.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.2.6.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a1Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a2Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a3Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a4Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a5Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.b1Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.b2Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.b3Windows
Multiple Vulnerabilities are affected in BIND 9.4.1Windows
Multiple Vulnerabilities are affected in BIND 9.4Windows
Multiple Vulnerabilities are affected in BIND 9.4.2Windows
Multiple Vulnerabilities are affected in BIND 9.2.7Windows
Vulnerabilities CVE-2009-0025,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.2.7.rc1Windows
Vulnerabilities CVE-2009-0025,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.2.7.rc2Windows
Vulnerabilities CVE-2009-0025,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.2.7.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a6Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.b4Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.4.2.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.4.2.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.4.3Windows
Multiple Vulnerabilities are affected in BIND 9.4.3.b1Windows
Multiple Vulnerabilities are affected in BIND 9.4.3.b2Windows
Multiple Vulnerabilities are affected in BIND 9.4.3.b3Windows
Multiple Vulnerabilities are affected in BIND 9.4.3.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.5.1Windows
Multiple Vulnerabilities are affected in BIND 9.6.0Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234