CVE-2020-8624

Description

In BIND 9.9.12 -> 9.9.13, 9.10.7 -> 9.10.8, 9.11.3 -> 9.11.21, 9.12.1 -> 9.16.5, 9.17.0 -> 9.17.3, also affects 9.9.12-S1 -> 9.9.13-S1, 9.11.3-S1 -> 9.11.21-S1 of the BIND 9 Supported Preview Edition, An attacker who has been granted privileges to change a specific subset of the zones content could abuse these unintended additional privileges to update other contents of the zone.

Risk Information

Base Score
4.3
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
EPSS Score
Exploitation Probability
1.687

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in BIND 9.17.1Windows
Internet Domain Name Server (USN-4468-1) bind9_9.16.1-0ubuntu2.3_i386.debLinux
Internet Domain Name Server (USN-4468-1) bind9_9.16.1-0ubuntu2.3_amd64.debLinux
Internet Domain Name Server (USN-4468-1) bind9_9.11.3+dfsg-1ubuntu1.13_i386.debLinux
Internet Domain Name Server (USN-4468-1) bind9_9.11.3+dfsg-1ubuntu1.13_amd64.debLinux
Internet Domain Name Server (USN-4468-1) bind9_9.10.3.dfsg.P4-8ubuntu1.17_i386.debLinux
Internet Domain Name Server (USN-4468-1) bind9_9.10.3.dfsg.P4-8ubuntu1.17_amd64.debLinux
bind9 security update(DSA-4752-1) bind9_9.11.5.P4+dfsg-5.1+deb10u2_i386.debLinux
bind9 security update(DSA-4752-1) bind9_9.11.5.P4+dfsg-5.1+deb10u2_amd64.debLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-chroot-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-debugsource-9.11.20-5.el8.i686.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-debugsource-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-devel-9.11.20-5.el8.i686.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-devel-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-export-devel-9.11.20-5.el8.i686.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-export-devel-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-export-libs-9.11.20-5.el8.i686.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-export-libs-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-libs-9.11.20-5.el8.i686.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-libs-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-libs-lite-9.11.20-5.el8.i686.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-libs-lite-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-license-9.11.20-5.el8.noarch.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-lite-devel-9.11.20-5.el8.i686.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-lite-devel-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-pkcs11-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-pkcs11-devel-9.11.20-5.el8.i686.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-pkcs11-devel-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-pkcs11-libs-9.11.20-5.el8.i686.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-pkcs11-libs-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-pkcs11-utils-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-sdb-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-sdb-chroot-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update bind-utils-9.11.20-5.el8.x86_64.rpmLinux
(RHSA-2020:4500) bind security, bug fix, and enhancement update python3-bind-9.11.20-5.el8.noarch.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-chroot-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-export-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-export-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-export-libs-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-export-libs-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-libs-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-libs-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-libs-lite-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-libs-lite-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-license-9.11.4-26.P2.el7_9.2.noarch.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-lite-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-lite-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-pkcs11-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-pkcs11-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-pkcs11-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-pkcs11-libs-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-pkcs11-libs-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-pkcs11-utils-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-sdb-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-sdb-chroot-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(RHSA-2020:5011) bind security and bug fix update bind-utils-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind update (ELSA-2020-5011) bind-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-chroot update (ELSA-2020-5011) bind-chroot-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-devel update (ELSA-2020-5011) bind-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-export-devel update (ELSA-2020-5011) bind-export-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-export-libs update (ELSA-2020-5011) bind-export-libs-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-libs update (ELSA-2020-5011) bind-libs-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-libs-lite update (ELSA-2020-5011) bind-libs-lite-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-lite-devel update (ELSA-2020-5011) bind-lite-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-pkcs11 update (ELSA-2020-5011) bind-pkcs11-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-pkcs11-devel update (ELSA-2020-5011) bind-pkcs11-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-pkcs11-libs update (ELSA-2020-5011) bind-pkcs11-libs-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-pkcs11-utils update (ELSA-2020-5011) bind-pkcs11-utils-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-sdb update (ELSA-2020-5011) bind-sdb-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-sdb-chroot update (ELSA-2020-5011) bind-sdb-chroot-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-utils update (ELSA-2020-5011) bind-utils-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Bind-license update (ELSA-2020-5011) bind-license-9.11.4-26.P2.el7_9.2.noarch.rpmLinux
Bind-devel update (ELSA-2020-5011) bind-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
Bind-export-devel update (ELSA-2020-5011) bind-export-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
Bind-export-libs update (ELSA-2020-5011) bind-export-libs-9.11.4-26.P2.el7_9.2.i686.rpmLinux
Bind-libs update (ELSA-2020-5011) bind-libs-9.11.4-26.P2.el7_9.2.i686.rpmLinux
Bind-libs-lite update (ELSA-2020-5011) bind-libs-lite-9.11.4-26.P2.el7_9.2.i686.rpmLinux
Bind-lite-devel update (ELSA-2020-5011) bind-lite-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
Bind-pkcs11-devel update (ELSA-2020-5011) bind-pkcs11-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
Bind-pkcs11-libs update (ELSA-2020-5011) bind-pkcs11-libs-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-chroot-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-export-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-export-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-export-libs-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-export-libs-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-libs-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-libs-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-libs-lite-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-libs-lite-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-license-9.11.4-26.P2.el7_9.2.noarch.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-lite-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-lite-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-pkcs11-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-pkcs11-devel-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-pkcs11-devel-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-pkcs11-libs-9.11.4-26.P2.el7_9.2.i686.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-pkcs11-libs-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-pkcs11-utils-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-sdb-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-sdb-chroot-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
(CESA-2020:5011) bind security and bug fix update bind-utils-9.11.4-26.P2.el7_9.2.x86_64.rpmLinux
Improper Privilege Management Vulnerability (CVE-2020-8624)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234