CVE-2013-2266
published 2013-03-28CVE-2013-2266: libdns in ISC BIND 9.7.x and 9.8.x before 9.8.4-P2, 9.8.5 before 9.8.5b2, 9.9.x before 9.9.2-P2, and 9.9.3 before 9.9.3b2 on UNIX platforms allows remote…
PriorityP349high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
42.85%
98.6th percentile
libdns in ISC BIND 9.7.x and 9.8.x before 9.8.4-P2, 9.8.5 before 9.8.5b2, 9.9.x before 9.9.2-P2, and 9.9.3 before 9.9.3b2 on UNIX platforms allows remote attackers to cause a denial of service (memory consumption) via a crafted regular expression, as demonstrated by a memory-exhaustion attack against a machine running a named process.
Affected
29 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | bind9 | < bind9 1:9.8.4.dfsg.P1-6+nmu1 (bookworm) | bind9 1:9.8.4.dfsg.P1-6+nmu1 (bookworm) |
| debian | isc-dhcp | < isc-dhcp 4.2.4-6 (bookworm) | isc-dhcp 4.2.4-6 (bookworm) |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind9 | >= 0 < 1:9.8.4.dfsg.P1-6+nmu1 | 1:9.8.4.dfsg.P1-6+nmu1 |
| isc | bind9 | >= 0 < 1:9.8.4.dfsg.P1-6+nmu1 | 1:9.8.4.dfsg.P1-6+nmu1 |
| isc | bind9 | >= 0 < 1:9.8.4.dfsg.P1-6+nmu1 | 1:9.8.4.dfsg.P1-6+nmu1 |
| isc | bind9 | >= 0 < 1:9.8.4.dfsg.P1-6+nmu1 | 1:9.8.4.dfsg.P1-6+nmu1 |
| isc | dhcp | — | — |
| isc | dhcp | — | — |
CVSS provenance
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
BSD
FreeBSD-SA-13:04.bind: BIND remote denial of service
bsd_advisories·2013-04-02·CVSS 7.8
CVE-2013-2266 [HIGH] FreeBSD-SA-13:04.bind: BIND remote denial of service
FreeBSD-SA-13:04.bind Security Advisory
The FreeBSD Project
Topic: BIND remote denial of service
Category: contrib
Module: bind
Announced: 2013-04-02
Credits: Matthew Horsfall of Dyn, Inc.
Affects: FreeBSD 8.4-BETA1 and FreeBSD 9.x
Corrected: 2013-03-28 05:35:46 UTC (stable/8, 8.4-BETA1)
2013-03-28 05:39:45 UTC (stable/9, 9.1-STABLE)
2013-04-02 17:34:42 UTC (releng/9.0, 9.0-RELEASE-p7)
2013-04-02 17:34:42 UTC (releng/9.1, 9.1-RELEASE-p2)
CVE Name: CVE-2013-2266
For general information regarding FreeBSD Security Advisories,
including descriptions of the fields above, security branches, and the
following sections, please visit .
I. Background
BIND 9 is an implementation of the Domain Name System (DNS) protocols.
The named(8) daemon is an Internet Domain Name Server. The libdns
library i
Ubuntu
Bind vulnerability
vendor_ubuntu·2013-03-29
CVE-2013-2266 Bind vulnerability
Title: Bind vulnerability
Summary: Bind could be made to consume memory or crash if it received specially
crafted network traffic.
Matthew Horsfall discovered that Bind incorrectly handled regular
expression checking. A remote attacker could use this flaw to cause Bind to
consume an excessive amount of memory, possibly resulting in a denial of
service. This issue was corrected by disabling RDATA regular expression
syntax checking.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
bind: libdns regular expressions excessive resource consumption DoS
vendor_redhat·2013-03-26·CVSS 7.8
CVE-2013-2266 [HIGH] bind: libdns regular expressions excessive resource consumption DoS
bind: libdns regular expressions excessive resource consumption DoS
libdns in ISC BIND 9.7.x and 9.8.x before 9.8.4-P2, 9.8.5 before 9.8.5b2, 9.9.x before 9.9.2-P2, and 9.9.3 before 9.9.3b2 on UNIX platforms allows remote attackers to cause a denial of service (memory consumption) via a crafted regular expression, as demonstrated by a memory-exhaustion attack against a machine running a named process.
Statement: This issue did not affect the versions of bind package as shipped with Red Hat Enterprise Linux 3, 4, and 5. This issue was corrected in bind97 packages in Red Hat Enterprise Linux 5 and bind packages in Red Hat Enterprise Linux 6.
Package: bind (Red Hat Enterprise Linux 4) - Not affected
Package: bind (Red Hat Enterprise Linux 5) - Not affected
Red Hat
dhcp: bind/libdns CVE-2013-2266 regular expressions excessive resource consumption DoS
vendor_redhat·2013-03-26·CVSS 7.8
CVE-2013-2494 [HIGH] dhcp: bind/libdns CVE-2013-2266 regular expressions excessive resource consumption DoS
dhcp: bind/libdns CVE-2013-2266 regular expressions excessive resource consumption DoS
libdns in ISC DHCP 4.2.x before 4.2.5-P1 allows remote name servers to cause a denial of service (memory consumption) via vectors involving a regular expression, as demonstrated by a memory-exhaustion attack against a machine running a dhcpd process, a related issue to CVE-2013-2266.
Statement: Not Vulnerable. This issue does not affect the version of dhcp as shipped with Red Hat Enterprise Linux 5 and 6.
Package: dhcp (Red Hat Enterprise Linux 4) - Not affected
Package: dhcp (Red Hat Enterprise Linux 5) - Not affected
Package: dhcp (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2013-2494: isc-dhcp - libdns in ISC DHCP 4.2.x before 4.2.5-P1 allows remote name servers to cause a d...
vendor_debian·2013·CVSS 7.8
CVE-2013-2494 [HIGH] CVE-2013-2494: isc-dhcp - libdns in ISC DHCP 4.2.x before 4.2.5-P1 allows remote name servers to cause a d...
libdns in ISC DHCP 4.2.x before 4.2.5-P1 allows remote name servers to cause a denial of service (memory consumption) via vectors involving a regular expression, as demonstrated by a memory-exhaustion attack against a machine running a dhcpd process, a related issue to CVE-2013-2266.
Scope: local
bookworm: resolved (fixed in 4.2.4-6)
bullseye: resolved (fixed in 4.2.4-6)
sid: resolved (fixed in 4.2.4-6)
trixie: resolved (fixed in 4.2.4-6)
Debian
CVE-2013-2266: bind9 - libdns in ISC BIND 9.7.x and 9.8.x before 9.8.4-P2, 9.8.5 before 9.8.5b2, 9.9.x ...
vendor_debian·2013·CVSS 7.8
CVE-2013-2266 [HIGH] CVE-2013-2266: bind9 - libdns in ISC BIND 9.7.x and 9.8.x before 9.8.4-P2, 9.8.5 before 9.8.5b2, 9.9.x ...
libdns in ISC BIND 9.7.x and 9.8.x before 9.8.4-P2, 9.8.5 before 9.8.5b2, 9.9.x before 9.9.2-P2, and 9.9.3 before 9.9.3b2 on UNIX platforms allows remote attackers to cause a denial of service (memory consumption) via a crafted regular expression, as demonstrated by a memory-exhaustion attack against a machine running a named process.
Scope: local
bookworm: resolved (fixed in 1:9.8.4.dfsg.P1-6+nmu1)
bullseye: resolved (fixed in 1:9.8.4.dfsg.P1-6+nmu1)
forky: resolved (fixed in 1:9.8.4.dfsg.P1-6+nmu1)
sid: resolved (fixed in 1:9.8.4.dfsg.P1-6+nmu1)
trixie: resolved (fixed in 1:9.8.4.dfsg.P1-6+nmu1)
GHSA
GHSA-f5jm-37c8-vx73: libdns in ISC DHCP 4
ghsa_unreviewed·2022-05-17·CVSS 7.8
CVE-2013-2494 [HIGH] CWE-119 GHSA-f5jm-37c8-vx73: libdns in ISC DHCP 4
libdns in ISC DHCP 4.2.x before 4.2.5-P1 allows remote name servers to cause a denial of service (memory consumption) via vectors involving a regular expression, as demonstrated by a memory-exhaustion attack against a machine running a dhcpd process, a related issue to CVE-2013-2266.
GHSA
GHSA-42v2-796f-qqmv: libdns in ISC BIND 9
ghsa_unreviewed·2022-05-14
CVE-2013-2266 [HIGH] CWE-119 GHSA-42v2-796f-qqmv: libdns in ISC BIND 9
libdns in ISC BIND 9.7.x and 9.8.x before 9.8.4-P2, 9.8.5 before 9.8.5b2, 9.9.x before 9.9.2-P2, and 9.9.3 before 9.9.3b2 on UNIX platforms allows remote attackers to cause a denial of service (memory consumption) via a crafted regular expression, as demonstrated by a memory-exhaustion attack against a machine running a named process.
OSV
CVE-2013-2494: libdns in ISC DHCP 4
osv·2013-03-28·CVSS 7.8
CVE-2013-2494 [HIGH] CVE-2013-2494: libdns in ISC DHCP 4
libdns in ISC DHCP 4.2.x before 4.2.5-P1 allows remote name servers to cause a denial of service (memory consumption) via vectors involving a regular expression, as demonstrated by a memory-exhaustion attack against a machine running a dhcpd process, a related issue to CVE-2013-2266.
OSV
CVE-2013-2266: libdns in ISC BIND 9
osv·2013-03-28·CVSS 7.8
CVE-2013-2266 [HIGH] CVE-2013-2266: libdns in ISC BIND 9
libdns in ISC BIND 9.7.x and 9.8.x before 9.8.4-P2, 9.8.5 before 9.8.5b2, 9.9.x before 9.9.2-P2, and 9.9.3 before 9.9.3b2 on UNIX platforms allows remote attackers to cause a denial of service (memory consumption) via a crafted regular expression, as demonstrated by a memory-exhaustion attack against a machine running a named process.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-2266 bind: libdns regular expressions excessive resource consumption DoS
bugzilla·2013-03-26·CVSS 7.8
CVE-2013-2266 [HIGH] CVE-2013-2266 bind: libdns regular expressions excessive resource consumption DoS
CVE-2013-2266 bind: libdns regular expressions excessive resource consumption DoS
A denial of service flaw was found in the way libdns library implementation of BIND processed certain requests. A remote attacker could issue a specially-crafted DNS query that, when processed would lead to excessive memory consumption (memory exhaustion) at the side of the named server process, possibly leading to its crash.
References:
[1] https://kb.isc.org/article/AA-00871
[2] https://kb.isc.org/article/AA-00879
[3] https://lists.isc.org/pipermail/bind-users/2013-March/090211.html
Affected versions:
9.7.0 and later, BIND 10 is not affected
Solution:
Upgrade to BIND 9 version 9.8.4-P2, 9.9.2-P2 or recompile BIND without regular expression support.
Discussion:
Created bind tracking bugs for this issue
Bugzilla
CVE-2013-2494 dhcp: bind/libdns CVE-2013-2266 regular expressions excessive resource consumption DoS
bugzilla·2013-03-26·CVSS 7.8
CVE-2013-2494 [HIGH] CVE-2013-2494 dhcp: bind/libdns CVE-2013-2266 regular expressions excessive resource consumption DoS
CVE-2013-2494 dhcp: bind/libdns CVE-2013-2266 regular expressions excessive resource consumption DoS
A denial of service flaw was found in the way libdns library implementation of BIND processed certain requests. A DHCP client could issue a specially-crafted DHCP protocol request that, when processed would lead to excessive memory consumption (memory exhaustion) at the side of the DHCP server process, possibly leading to its crash.
References:
[1] https://kb.isc.org/article/AA-00880
[2] ftp://ftp.isc.org/isc/dhcp/4.2.5-P1/dhcp-4.2.5-P1-RELNOTES
Discussion:
Release notes indicate:
- A security issue in Bind9 was found and fixed. This release includes the
fixed Bind9 code. There have been no code changes to the DHCP code.
[ISC-Bugs #32688]
CVE: CVE-2013-2266
DHCP update upgrades used B
Bugzilla
CVE-2013-2266 bind: Memory exhaustion bug in libdns, leading to excessive memory consumption in named [fedora-all]
bugzilla·2013-03-26·CVSS 7.8
CVE-2013-2266 [HIGH] CVE-2013-2266 bind: Memory exhaustion bug in libdns, leading to excessive memory consumption in named [fedora-all]
CVE-2013-2266 bind: Memory exhaustion bug in libdns, leading to excessive memory consumption in named [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when av
http://linux.oracle.com/errata/ELSA-2014-1244http://lists.apple.com/archives/security-announce/2013/Sep/msg00002.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-April/101500.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-April/101603.htmlhttp://marc.info/?l=bugtraq&m=136804614120794&w=2http://rhn.redhat.com/errata/RHSA-2013-0689.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0690.htmlhttp://support.apple.com/kb/HT5880http://www.debian.org/security/2013/dsa-2656http://www.isc.org/software/bind/advisories/cve-2013-2266http://www.securityfocus.com/bid/58736http://www.ubuntu.com/usn/USN-1783-1https://kb.isc.org/article/AA-00871/https://kb.isc.org/article/AA-00879/https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19579http://linux.oracle.com/errata/ELSA-2014-1244http://lists.apple.com/archives/security-announce/2013/Sep/msg00002.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-April/101500.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-April/101603.htmlhttp://marc.info/?l=bugtraq&m=136804614120794&w=2http://rhn.redhat.com/errata/RHSA-2013-0689.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0690.htmlhttp://support.apple.com/kb/HT5880http://www.debian.org/security/2013/dsa-2656http://www.isc.org/software/bind/advisories/cve-2013-2266http://www.securityfocus.com/bid/58736http://www.ubuntu.com/usn/USN-1783-1https://kb.isc.org/article/AA-00871/https://kb.isc.org/article/AA-00879/https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19579
2013-03-28
Published