CVE-2005-0034
published 2005-05-02CVE-2005-0034: An "incorrect assumption" in the authvalidated validator function in BIND 9.3.0, when DNSSEC is enabled, allows remote attackers to cause a denial of service…
PriorityP420medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
6.35%
92.9th percentile
An "incorrect assumption" in the authvalidated validator function in BIND 9.3.0, when DNSSEC is enabled, allows remote attackers to cause a denial of service (named server exit) via crafted DNS packets that cause an internal consistency test (self-check) to fail.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | bind9 | < bind9 1:9.3.1 (bookworm) | bind9 1:9.3.1 (bookworm) |
| isc | bind | — | — |
| isc | bind9 | >= 0 < 1:9.3.1 | 1:9.3.1 |
| isc | bind9 | >= 0 < 1:9.3.1 | 1:9.3.1 |
| isc | bind9 | >= 0 < 1:9.3.1 | 1:9.3.1 |
| isc | bind9 | >= 0 < 1:9.3.1 | 1:9.3.1 |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM
vendor_debian4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
BSD
FreeBSD-SA-05:12.bind9: BIND 9 DNSSEC remote denial of service vulnerability
bsd_advisories·2005-06-09
FreeBSD-SA-05:12.bind9: BIND 9 DNSSEC remote denial of service vulnerability
FreeBSD-SA-05:12.bind9 Security Advisory
The FreeBSD Project
Topic: BIND 9 DNSSEC remote denial of service vulnerability
Category: core
Module: bind9
Announced: 2005-06-09
Credits: Internet Systems Consortium
Affects: FreeBSD 5.3
Corrected: 2005-03-23 18:16:29 UTC (RELENG_5, 5.3-STABLE)
2005-06-08 21:29:15 UTC (RELENG_5_3, 5.3-RELEASE-p16)
CVE Name: CAN-2005-0034
For general information regarding FreeBSD Security Advisories,
including descriptions of the fields above, security branches, and the
following sections, please visit
.
I. Background
BIND 9 is an implementation of the Domain Name System (DNS) protocols.
The named(8) daemon is the Internet domain name server. DNS Security
Extensions (DNSSEC) are additional protocol options that add
authentication and integrity to the DNS proto
Debian
CVE-2005-0034: bind9 - An "incorrect assumption" in the authvalidated validator function in BIND 9.3.0,...
vendor_debian·2005·CVSS 4.3
CVE-2005-0034 [MEDIUM] CVE-2005-0034: bind9 - An "incorrect assumption" in the authvalidated validator function in BIND 9.3.0,...
An "incorrect assumption" in the authvalidated validator function in BIND 9.3.0, when DNSSEC is enabled, allows remote attackers to cause a denial of service (named server exit) via crafted DNS packets that cause an internal consistency test (self-check) to fail.
Scope: local
bookworm: resolved (fixed in 1:9.3.1)
bullseye: resolved (fixed in 1:9.3.1)
forky: resolved (fixed in 1:9.3.1)
sid: resolved (fixed in 1:9.3.1)
trixie: resolved (fixed in 1:9.3.1)
GHSA
GHSA-pmcv-f6x3-9656: An "incorrect assumption" in the authvalidated validator function in BIND 9
ghsa_unreviewed·2022-05-01
CVE-2005-0034 [MEDIUM] GHSA-pmcv-f6x3-9656: An "incorrect assumption" in the authvalidated validator function in BIND 9
An "incorrect assumption" in the authvalidated validator function in BIND 9.3.0, when DNSSEC is enabled, allows remote attackers to cause a denial of service (named server exit) via crafted DNS packets that cause an internal consistency test (self-check) to fail.
OSV
CVE-2005-0034: An "incorrect assumption" in the authvalidated validator function in BIND 9
osv·2005-05-02·CVSS 4.3
CVE-2005-0034 [MEDIUM] CVE-2005-0034: An "incorrect assumption" in the authvalidated validator function in BIND 9
An "incorrect assumption" in the authvalidated validator function in BIND 9.3.0, when DNSSEC is enabled, allows remote attackers to cause a denial of service (named server exit) via crafted DNS packets that cause an internal consistency test (self-check) to fail.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/14008http://securitytracker.com/id?1012995http://www.isc.org/index.pl?/sw/bind/bind-security.phphttp://www.isc.org/index.pl?/sw/bind/bind9.phphttp://www.kb.cert.org/vuls/id/938617http://www.securityfocus.com/bid/12365http://www.trustix.org/errata/2005/0003/http://www.uniras.gov.uk/niscc/docs/al-20050125-00060.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/19062http://secunia.com/advisories/14008http://securitytracker.com/id?1012995http://www.isc.org/index.pl?/sw/bind/bind-security.phphttp://www.isc.org/index.pl?/sw/bind/bind9.phphttp://www.kb.cert.org/vuls/id/938617http://www.securityfocus.com/bid/12365http://www.trustix.org/errata/2005/0003/http://www.uniras.gov.uk/niscc/docs/al-20050125-00060.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/19062
2005-05-02
Published