CVE-2009-4022

Description

Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P4, 9.5 before 9.5.2-P1, 9.6 before 9.6.1-P2, and 9.7 beta before 9.7.0b3, with DNSSEC validation enabled and checking disabled (CD), allows remote attackers to conduct DNS cache poisoning attacks by receiving a recursive client query and sending a response that contains an Additional section with crafted data, which is not properly handled when the response is processed at the same time as requesting DNSSEC records (DO), aka Bug 20438.

Risk Information

Base Score
7.5
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
EPSS Score
Exploitation Probability
20.044

Associated Vulnerability

VulnerabilityOS Platform
Update bind 9.7.0 to latest versionWindows
Multiple Vulnerabilities are affected in BIND 9.4.0Windows
Multiple Vulnerabilities are affected in BIND 9.1.2Windows
Multiple Vulnerabilities are affected in BIND 9.0Windows
Multiple Vulnerabilities are affected in BIND 9.1Windows
Multiple Vulnerabilities are affected in BIND 9.1.1Windows
Multiple Vulnerabilities are affected in BIND 9.1.3Windows
Multiple Vulnerabilities are affected in BIND 9.2Windows
Multiple Vulnerabilities are affected in BIND 9.3.0Windows
Multiple Vulnerabilities are affected in BIND 9.3.2Windows
Multiple Vulnerabilities are affected in BIND 9.0.1Windows
Multiple Vulnerabilities are affected in BIND 9.2.0Windows
Multiple Vulnerabilities are affected in BIND 9.2.1Windows
Multiple Vulnerabilities are affected in BIND 9.2.2Windows
Multiple Vulnerabilities are affected in BIND 9.2.3Windows
Multiple Vulnerabilities are affected in BIND 9.3Windows
Multiple Vulnerabilities are affected in BIND 9.3.1Windows
Multiple Vulnerabilities are affected in BIND 9.2.6Windows
Multiple Vulnerabilities are affected in BIND 9.2.4Windows
Multiple Vulnerabilities are affected in BIND 9.2.5Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.5.0Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc4Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc5Windows
Multiple Vulnerabilities are affected in BIND 9.0.0.rc6Windows
Multiple Vulnerabilities are affected in BIND 9.0.1.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.0.1.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.1.0.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc4Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc5Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc6Windows
Multiple Vulnerabilities are affected in BIND 9.1.1.rc7Windows
Multiple Vulnerabilities are affected in BIND 9.1.2.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.1.3.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.1.3.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.1.3.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.a1Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.a2Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.a3Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.b1Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.b2Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc10Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc4Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc5Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc6Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc7Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc8Windows
Multiple Vulnerabilities are affected in BIND 9.2.0.rc9Windows
Multiple Vulnerabilities are affected in BIND 9.2.1.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.2.1.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.2.2.p2Windows
Multiple Vulnerabilities are affected in BIND 9.2.2.p3Windows
Multiple Vulnerabilities are affected in BIND 9.2.2.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.2.3.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.2.3.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.2.3.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.2.3.rc4Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc4Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc5Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc6Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc7Windows
Multiple Vulnerabilities are affected in BIND 9.2.4.rc8Windows
Multiple Vulnerabilities are affected in BIND 9.2.5.b2Windows
Multiple Vulnerabilities are affected in BIND 9.2.5.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.2.6.rc1Windows
Vulnerabilities CVE-2007-0494,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.0.b2Windows
Vulnerabilities CVE-2007-0494,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.0.b3Windows
Vulnerabilities CVE-2007-0494,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.0.b4Windows
Vulnerabilities CVE-2007-0494,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.0.rc1Windows
Vulnerabilities CVE-2007-0494,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.0.rc2Windows
Vulnerabilities CVE-2007-0494,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.0.rc3Windows
Vulnerabilities CVE-2007-0494,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.0.rc4Windows
Vulnerabilities CVE-2007-0494,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.1.b2Windows
Vulnerabilities CVE-2007-0494,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.1.rc1Windows
Vulnerabilities CVE-2007-0494,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.2.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a1Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a2Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a3Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a4Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a5Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.b1Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.b2Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.b3Windows
Multiple Vulnerabilities are affected in BIND 9.5.0.a1Windows
Multiple Vulnerabilities are affected in BIND 9.4.1Windows
Multiple Vulnerabilities are affected in BIND 9.4.2Windows
Vulnerabilities CVE-2008-1447,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.2.9Windows
Multiple Vulnerabilities are affected in BIND 9.5.0.p2_w1Windows
Multiple Vulnerabilities are affected in BIND 9.2.7Windows
Vulnerabilities CVE-2009-0025,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.2.7.rc1Windows
Vulnerabilities CVE-2009-0025,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.2.7.rc2Windows
Vulnerabilities CVE-2009-0025,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.2.7.rc3Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.a6Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.b4Windows
Multiple Vulnerabilities are affected in BIND 9.4.0.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.4.2.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.4.2.rc2Windows
Multiple Vulnerabilities are affected in BIND 9.4.3Windows
Multiple Vulnerabilities are affected in BIND 9.4.3.b1Windows
Multiple Vulnerabilities are affected in BIND 9.4.3.b2Windows
Multiple Vulnerabilities are affected in BIND 9.4.3.b3Windows
Multiple Vulnerabilities are affected in BIND 9.4.3.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.5.1Windows
Multiple Vulnerabilities are affected in BIND 9.6.0Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.4.3.p2Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.a2Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.a3Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.a4Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.a5Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.a6Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.a7Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.b1Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.b2Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.b3Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.p1Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.p2Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.0.p2_w2Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.6.0.a1Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.6.0.b1Windows
Multiple Vulnerabilities are affected in BIND 9.6.0.p1Windows
Multiple Vulnerabilities are affected in BIND 9.6.0.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.6.0.rc2Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.6.1Windows
Vulnerabilities CVE-2009-0696,CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.6.1.b1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.2.8Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.2.9.rc1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.3.3Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.3.rc1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.3.rc2Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.3.rc3Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.4Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.5Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.5.rc1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.5.rc2Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.6Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.3.6.rc1Windows
Vulnerabilities CVE-2009-4022,CVE-2011-1910 are affected in BIND 9.4.3.p1Windows
Vulnerabilities CVE-2009-4022,CVE-2011-1910 are affected in BIND 9.4.3.p3Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.5.0.rc1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.1.b1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.1.b2Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.1.b3Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.5.1.rc1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.5.1.rc2Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.2Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.5.2.b1Windows
Vulnerabilities CVE-2009-4022,CVE-2011-1910 are affected in BIND 9.5.2.rc1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-0097,CVE-2011-1910 are affected in BIND 9.6.1.p1Windows
Vulnerabilities CVE-2009-4022,CVE-2011-1910 are affected in BIND 9.6.1.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.7.0Windows
Vulnerabilities CVE-2009-4022,CVE-2010-3613,CVE-2011-1910 are affected in BIND 9.7.0.a1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-3613,CVE-2011-1910 are affected in BIND 9.7.0.a2Windows
Vulnerabilities CVE-2009-4022,CVE-2010-3613,CVE-2011-1910 are affected in BIND 9.7.0.a3Windows
Vulnerabilities CVE-2009-4022,CVE-2010-3613,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.7.0.b1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-3613,CVE-2011-1910 are affected in BIND 9.7.0.b2Windows
Vulnerabilities CVE-2009-4022,CVE-2010-3613,CVE-2011-1910 are affected in BIND 9.7.0.b3Windows
Vulnerabilities CVE-2009-4022,CVE-2010-3613,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.7.0.p1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-3613,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.7.0.rc1Windows
Vulnerabilities CVE-2009-4022,CVE-2010-3613,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.7.0.rc2Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234