CVE-2011-0414

Description

ISC BIND 9.7.1 through 9.7.2-P3, when configured as an authoritative server, allows remote attackers to cause a denial of service (deadlock and daemon hang) by sending a query at the time of (1) an IXFR transfer or (2) a DDNS update.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
5.991

Associated Vulnerability

VulnerabilityOS Platform
Update bind 9.7.2 to latest versionWindows
Multiple Vulnerabilities are affected in BIND 9.7.1Windows
Multiple Vulnerabilities are affected in BIND 9.7.1.p1Windows
Multiple Vulnerabilities are affected in BIND 9.7.2Windows
Multiple Vulnerabilities are affected in BIND 9.7.2.p1Windows
Vulnerabilities CVE-2010-3613,CVE-2011-0414,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.7.1.p2Windows
Vulnerabilities CVE-2010-3613,CVE-2011-0414,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.7.1.rc1Windows
Multiple Vulnerabilities are affected in BIND 9.7.2.p2Windows
Vulnerabilities CVE-2011-0414,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.7.2.p3Windows
Vulnerabilities CVE-2011-0414,CVE-2011-1910,CVE-2012-1033 are affected in BIND 9.7.2.rc1Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234