CVE-2006-2073Bind vulnerability

7 documents7 sources
Severity
5.0MEDIUMNVD
EPSS
5.2%
top 10.02%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 27
Latest updateMay 1

Description

Unspecified vulnerability in ISC BIND allows remote attackers to cause a denial of service via a crafted DNS message with a "broken" TSIG, as demonstrated by the OUSPG PROTOS DNS test suite.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

Debianisc/bind9< 1:9.3.3-1+3
NVDisc/bind13 versions+12

Patches

🔴Vulnerability Details

3
GHSA
GHSA-35jh-g8qg-jgf5: Unspecified vulnerability in ISC BIND allows remote attackers to cause a denial of service via a crafted DNS message with a "broken" TSIG, as demonstr2022-05-01
OSV
CVE-2006-2073: Unspecified vulnerability in ISC BIND allows remote attackers to cause a denial of service via a crafted DNS message with a "broken" TSIG, as demonstr2006-04-27
CVEList
CVE-2006-2073: Unspecified vulnerability in ISC BIND allows remote attackers to cause a denial of service via a crafted DNS message with a "broken" TSIG, as demonstr2006-04-27

💥Exploits & PoCs

1
Exploit-DB
AccessDiver 4.301 - Buffer Overflow2015-12-26

📋Vendor Advisories

2
Debian
CVE-2006-2073: bind9 - Unspecified vulnerability in ISC BIND allows remote attackers to cause a denial ...2006
Red Hat
CVE-2006-2073: Unspecified vulnerability in ISC BIND allows remote attackers to cause a denial of service via a crafted DNS message with a "broken" TSIG, as demonstr
CVE-2006-2073 — ISC Bind vulnerability | cvebase