cbcvebase.
CVE-2012-5689
published 2013-01-25

CVE-2012-5689: ISC BIND 9.8.x through 9.8.4-P1 and 9.9.x through 9.9.2-P1, in certain configurations involving DNS64 with a Response Policy Zone that lacks an AAAA rewrite…

high7.1CVSS 3.1
AVNACMAuNCNINAC
ISC BIND 9.8.x through 9.8.4-P1 and 9.9.x through 9.9.2-P1, in certain configurations involving DNS64 with a Response Policy Zone that lacks an AAAA rewrite rule, allows remote attackers to cause a denial of service (assertion failure and named daemon exit) via a query for an AAAA record.

Affected

24 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debianbind9< bind9 1:9.8.4.dfsg.P1-6+nmu1 (bookworm)bind9 1:9.8.4.dfsg.P1-6+nmu1 (bookworm)
debianisc-dhcp< bind9 1:9.8.4.dfsg.P1-6+nmu1 (bookworm)bind9 1:9.8.4.dfsg.P1-6+nmu1 (bookworm)
iscbind
iscbind
iscbind
iscbind
iscbind
iscbind
iscbind
iscbind
iscbind9>= 0 < 1:9.8.4.dfsg.P1-6+nmu11:9.8.4.dfsg.P1-6+nmu1
iscbind9>= 0 < 1:9.8.4.dfsg.P1-6+nmu11:9.8.4.dfsg.P1-6+nmu1
iscbind9>= 0 < 1:9.8.4.dfsg.P1-6+nmu11:9.8.4.dfsg.P1-6+nmu1
iscbind9>= 0 < 1:9.8.4.dfsg.P1-6+nmu11:9.8.4.dfsg.P1-6+nmu1
iscbind9>= 0 < 1:9.9.5.dfsg-3ubuntu0.41:9.9.5.dfsg-3ubuntu0.4
redhatenterprise_linux_desktop
redhatenterprise_linux_hpc_node
redhatenterprise_linux_server
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_eus
redhatenterprise_linux_workstation

CVSS provenance

nvd7.1HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
osv7.1HIGH