CVE-2013-6230
published 2013-11-08CVE-2013-6230: The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9.6-ESV before 9.6-ESV-R10-P1, 9.8 before 9.8.6-P1, 9.9 before 9.9.4-P1…
PriorityP340medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
5.71%
92.5th percentile
The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9.6-ESV before 9.6-ESV-R10-P1, 9.8 before 9.8.6-P1, 9.9 before 9.9.4-P1, 9.9.3-S1, 9.9.4-S1, and other products, does not properly support the SIO_GET_INTERFACE_LIST command for netmask 255.255.255.255, which allows remote attackers to bypass intended IP address restrictions by leveraging misinterpretation of this netmask as a 0.0.0.0 netmask.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | bind9 | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
| isc | bind | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_debian6.8LOW
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
bind: localnets ACL bypass caused by WinSock API bug
vendor_redhat·2013-11-06·CVSS 6.8
CVE-2013-6230 [MEDIUM] bind: localnets ACL bypass caused by WinSock API bug
bind: localnets ACL bypass caused by WinSock API bug
The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9.6-ESV before 9.6-ESV-R10-P1, 9.8 before 9.8.6-P1, 9.9 before 9.9.4-P1, 9.9.3-S1, 9.9.4-S1, and other products, does not properly support the SIO_GET_INTERFACE_LIST command for netmask 255.255.255.255, which allows remote attackers to bypass intended IP address restrictions by leveraging misinterpretation of this netmask as a 0.0.0.0 netmask.
Statement: Not vulnerable. This flaw only affected BIND on Microsoft Windows platforms with a flawed WinSock call. This vulnerability does not affect BIND on Linux or Unix platforms.
Package: bind (Red Hat Enterprise Linux 5) - Not affected
Package: bind97 (Red Hat Enterprise Linux 5) - Not affected
Package: bind (R
Debian
CVE-2013-6230: bind9 - The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9...
vendor_debian·2013·CVSS 6.8
CVE-2013-6230 [MEDIUM] CVE-2013-6230: bind9 - The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9...
The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9.6-ESV before 9.6-ESV-R10-P1, 9.8 before 9.8.6-P1, 9.9 before 9.9.4-P1, 9.9.3-S1, 9.9.4-S1, and other products, does not properly support the SIO_GET_INTERFACE_LIST command for netmask 255.255.255.255, which allows remote attackers to bypass intended IP address restrictions by leveraging misinterpretation of this netmask as a 0.0.0.0 netmask.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
GHSA
GHSA-v9c9-f7pq-rcx4: The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9
ghsa_unreviewed·2022-05-14
CVE-2013-6230 [MEDIUM] GHSA-v9c9-f7pq-rcx4: The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9
The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9.6-ESV before 9.6-ESV-R10-P1, 9.8 before 9.8.6-P1, 9.9 before 9.9.4-P1, 9.9.3-S1, 9.9.4-S1, and other products, does not properly support the SIO_GET_INTERFACE_LIST command for netmask 255.255.255.255, which allows remote attackers to bypass intended IP address restrictions by leveraging misinterpretation of this netmask as a 0.0.0.0 netmask.
No detection rules found.
No public exploits indexed.
http://www.slackware.com/security/viewer.php?l=slackware-security&y=2014&m=slackware-security.518391https://kb.isc.org/article/AA-01062https://kb.isc.org/article/AA-01063http://www.slackware.com/security/viewer.php?l=slackware-security&y=2014&m=slackware-security.518391https://kb.isc.org/article/AA-01062https://kb.isc.org/article/AA-01063
2013-11-08
Published