CVE-2010-0290
published 2010-01-22CVE-2010-0290: Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta, with DNSSEC…
PriorityP424medium4CVSS 2.0
AVNACHAuNCNIPAP
EPSS
6.78%
93.3th percentile
Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta, with DNSSEC validation enabled and checking disabled (CD), allows remote attackers to conduct DNS cache poisoning attacks by receiving a recursive client query and sending a response that contains (1) CNAME or (2) DNAME records, which do not have the intended validation before caching, aka Bug 20737. NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-4022.
Affected
44 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | bind9 | < bind9 1:9.7.0.dfsg-1 (bookworm) | bind9 1:9.7.0.dfsg-1 (bookworm) |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:H/Au:N/C:N/I:P/A:P
osv2.6LOW
vendor_debian2.6MEDIUM
vendor_redhat2.6LOW
vendor_ubuntu2.6LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Bind vulnerabilities
vendor_ubuntu·2010-01-20·CVSS 2.6
CVE-2010-0097 [LOW] Bind vulnerabilities
Title: Bind vulnerabilities
Summary: Bind vulnerabilities
It was discovered that Bind would incorrectly cache bogus NXDOMAIN
responses. When DNSSEC validation is in use, a remote attacker could
exploit this to cause a denial of service, and possibly poison DNS caches.
(CVE-2010-0097)
USN-865-1 provided updated Bind packages to fix a security vulnerability.
The upstream security patch to fix CVE-2009-4022 was incomplete and
CVE-2010-0290 was assigned to the issue. This update corrects the problem.
Original advisory details:
Michael Sinatra discovered that Bind did not correctly validate certain
records added to its cache. When DNSSEC validation is in use, a remote
attacker could exploit this to spoof DNS entries and poison DNS caches.
Among other things, this could lead to misdirected e
Red Hat
BIND upstream fix for CVE-2009-4022 is incomplete
vendor_redhat·2010-01-19·CVSS 2.6
CVE-2010-0290 [LOW] BIND upstream fix for CVE-2009-4022 is incomplete
BIND upstream fix for CVE-2009-4022 is incomplete
Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta, with DNSSEC validation enabled and checking disabled (CD), allows remote attackers to conduct DNS cache poisoning attacks by receiving a recursive client query and sending a response that contains (1) CNAME or (2) DNAME records, which do not have the intended validation before caching, aka Bug 20737. NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-4022.
Debian
CVE-2010-0290: bind9 - Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, ...
vendor_debian·2010·CVSS 2.6
CVE-2010-0290 [LOW] CVE-2010-0290: bind9 - Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, ...
Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta, with DNSSEC validation enabled and checking disabled (CD), allows remote attackers to conduct DNS cache poisoning attacks by receiving a recursive client query and sending a response that contains (1) CNAME or (2) DNAME records, which do not have the intended validation before caching, aka Bug 20737. NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-4022.
Scope: local
bookworm: resolved (fixed in 1:9.7.0.dfsg-1)
bullseye: resolved (fixed in 1:9.7.0.dfsg-1)
forky: resolved (fixed in 1:9.7.0.dfsg-1)
sid: resolved (fixed in 1:9.7.0.dfsg-1)
trixie: resolved (fixed in 1:9.7.0.dfsg-1)
VulDB
ISC BIND up to 9.3.3 DNS Cache (Nessus ID 44099 / ID 118507)
vuldb·2026-04-29·CVSS 4.0
CVE-2010-0290 [MEDIUM] ISC BIND up to 9.3.3 DNS Cache (Nessus ID 44099 / ID 118507)
A vulnerability categorized as problematic has been discovered in ISC BIND up to 9.3.3. This impacts an unknown function of the component DNS Cache. The manipulation results in an unknown weakness.
This vulnerability is cataloged as CVE-2010-0290. The attack may be launched remotely. There is no exploit available.
GHSA
GHSA-h2vx-r9q8-wjqr: Unspecified vulnerability in ISC BIND 9
ghsa_unreviewed·2022-05-02·CVSS 2.6
CVE-2010-0290 [LOW] GHSA-h2vx-r9q8-wjqr: Unspecified vulnerability in ISC BIND 9
Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta, with DNSSEC validation enabled and checking disabled (CD), allows remote attackers to conduct DNS cache poisoning attacks by receiving a recursive client query and sending a response that contains (1) CNAME or (2) DNAME records, which do not have the intended validation before caching, aka Bug 20737. NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-4022.
OSV
CVE-2010-0290: Unspecified vulnerability in ISC BIND 9
osv·2010-01-22·CVSS 2.6
CVE-2010-0290 [LOW] CVE-2010-0290: Unspecified vulnerability in ISC BIND 9
Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta, with DNSSEC validation enabled and checking disabled (CD), allows remote attackers to conduct DNS cache poisoning attacks by receiving a recursive client query and sending a response that contains (1) CNAME or (2) DNAME records, which do not have the intended validation before caching, aka Bug 20737. NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-4022.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-0382 bind: out-of-bailiwick data vulnerability due to regression while fixing CVE-2009-4022
bugzilla·2010-01-22·CVSS 2.6
CVE-2010-0382 [LOW] CVE-2010-0382 bind: out-of-bailiwick data vulnerability due to regression while fixing CVE-2009-4022
CVE-2010-0382 bind: out-of-bailiwick data vulnerability due to regression while fixing CVE-2009-4022
Common Vulnerabilities and Exposures assigned an identifier CVE-2010-0382 to
the following vulnerability:
Name: CVE-2010-0382
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0382
Assigned: 20100122
Reference: CONFIRM: https://www.isc.org/advisories/CVE-2009-4022v6
ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before
9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta handles out-of-bailiwick
data accompanying a secure response without re-fetching from the
original source, which allows remote attackers to have an unspecified
impact via a crafted response, aka Bug 20819. NOTE: this vulnerability
exists because of a regression during the fix for CVE-2009-4022
Discussion:
I'
Bugzilla
CVE-2010-0290 BIND upstream fix for CVE-2009-4022 is incomplete
bugzilla·2010-01-20·CVSS 2.6
CVE-2010-0290 [LOW] CVE-2010-0290 BIND upstream fix for CVE-2009-4022 is incomplete
CVE-2010-0290 BIND upstream fix for CVE-2009-4022 is incomplete
The original fix for CVE-2009-4022 was found to be incomplete. BIND was incorrectly caching certain responses without performing proper DNSSEC validation. CNAME and DNAME records could be cached, without proper DNSSEC validation, when received from processing recursive client queries that requested DNSSEC records but indicated that checking should be disabled. A remote attacker could use this flaw to bypass the DNSSEC validation check and perform a cache poisoning attack if the target BIND server was receiving such client queries.
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 5
Via RHSA-2010:0062 https://rhn.redhat.com/errata/RHSA-2010-0062.html
http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.htmlhttp://marc.info/?l=oss-security&m=126393609503704&w=2http://marc.info/?l=oss-security&m=126399602810086&w=2http://secunia.com/advisories/38219http://secunia.com/advisories/38240http://secunia.com/advisories/40086http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0018http://www.debian.org/security/2010/dsa-2054http://www.mandriva.com/security/advisories?name=MDVSA-2010:021http://www.ubuntu.com/usn/USN-888-1http://www.vupen.com/english/advisories/2010/0176http://www.vupen.com/english/advisories/2010/0622http://www.vupen.com/english/advisories/2010/1352https://bugzilla.redhat.com/show_bug.cgi?id=554851https://bugzilla.redhat.com/show_bug.cgi?id=557121https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6815https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7512https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8884https://rhn.redhat.com/errata/RHSA-2010-0062.htmlhttps://www.isc.org/advisories/CVE-2009-4022v6http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.htmlhttp://marc.info/?l=oss-security&m=126393609503704&w=2http://marc.info/?l=oss-security&m=126399602810086&w=2http://secunia.com/advisories/38219http://secunia.com/advisories/38240http://secunia.com/advisories/40086http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0018http://www.debian.org/security/2010/dsa-2054http://www.mandriva.com/security/advisories?name=MDVSA-2010:021http://www.ubuntu.com/usn/USN-888-1http://www.vupen.com/english/advisories/2010/0176http://www.vupen.com/english/advisories/2010/0622http://www.vupen.com/english/advisories/2010/1352https://bugzilla.redhat.com/show_bug.cgi?id=554851https://bugzilla.redhat.com/show_bug.cgi?id=557121https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6815https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7512https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8884https://rhn.redhat.com/errata/RHSA-2010-0062.htmlhttps://www.isc.org/advisories/CVE-2009-4022v6
2010-01-22
Published