CVE-2022-2906
published 2022-09-21CVE-2022-2906: An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would…
PriorityP340high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.72%
75.1th percentile
An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | bind9 | < bind9 1:9.18.7-1 (bookworm) | bind9 1:9.18.7-1 (bookworm) |
| isc | bind | >= 9.18.0 < 9.18.7 | 9.18.7 |
| isc | bind | >= 9.19.0 < 9.19.5 | 9.19.5 |
| isc | bind9 | — | — |
| isc | bind9 | — | — |
| isc | bind9 | >= 0 < 1:9.18.7-1 | 1:9.18.7-1 |
| isc | bind9 | >= 0 < 1:9.18.7-1 | 1:9.18.7-1 |
| isc | bind9 | >= 0 < 1:9.18.7-1 | 1:9.18.7-1 |
| isc | bind9 | >= 0 < 1:9.11.3+dfsg-1ubuntu1.18 | 1:9.11.3+dfsg-1ubuntu1.18 |
| isc | bind9 | >= 0 < 1:9.16.1-0ubuntu2.11 | 1:9.16.1-0ubuntu2.11 |
| isc | bind9 | >= 0 < 1:9.18.1-1ubuntu1.2 | 1:9.18.1-1ubuntu1.2 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-pqxc-54m5-8r8m: An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources
ghsa_unreviewed·2022-09-22
CVE-2022-2906 [HIGH] CWE-401 GHSA-pqxc-54m5-8r8m: An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources
An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.
OSV
bind9 vulnerabilities
osv·2022-09-21·CVSS 5.3
CVE-2022-2795 [MEDIUM] bind9 vulnerabilities
bind9 vulnerabilities
Yehuda Afek, Anat Bremler-Barr, and Shani Stajnrod discovered that Bind
incorrectly handled large delegations. A remote attacker could possibly use
this issue to reduce performance, leading to a denial of service.
(CVE-2022-2795)
It was discovered that Bind incorrectly handled statistics requests. A
remote attacker could possibly use this issue to obtain sensitive memory
contents, or cause a denial of service. This issue only affected Ubuntu
22.04 LTS. (CVE-2022-2881)
It was discovered that Bind incorrectly handled memory when processing
certain Diffie-Hellman key exchanges. A remote attacker could use this
issue to consume resources, leading to a denial of service. This issue only
affected Ubuntu 22.04 LTS. (CVE-2022-2906)
Maksym Odinintsev discovered that Bind i
OSV
CVE-2022-2906: An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources
osv·2022-09-21·CVSS 7.5
CVE-2022-2906 [HIGH] CVE-2022-2906: An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources
An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.
Ubuntu
Bind vulnerabilities
vendor_ubuntu·2022-09-21·CVSS 5.3
CVE-2022-3080 [MEDIUM] Bind vulnerabilities
Title: Bind vulnerabilities
Summary: Several security issues were fixed in Bind.
Yehuda Afek, Anat Bremler-Barr, and Shani Stajnrod discovered that Bind
incorrectly handled large delegations. A remote attacker could possibly use
this issue to reduce performance, leading to a denial of service.
(CVE-2022-2795)
It was discovered that Bind incorrectly handled statistics requests. A
remote attacker could possibly use this issue to obtain sensitive memory
contents, or cause a denial of service. This issue only affected Ubuntu
22.04 LTS. (CVE-2022-2881)
It was discovered that Bind incorrectly handled memory when processing
certain Diffie-Hellman key exchanges. A remote attacker could use this
issue to consume resources, leading to a denial of service. This issue only
affected Ubuntu 22.04 LT
Red Hat
bind: memory leaks in code handling Diffie-Hellman key exchange via TKEY RRs
vendor_redhat·2022-09-21·CVSS 7.5
CVE-2022-2906 [HIGH] CWE-401 bind: memory leaks in code handling Diffie-Hellman key exchange via TKEY RRs
bind: memory leaks in code handling Diffie-Hellman key exchange via TKEY RRs
An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.
A flaw was found in the Bind package, where a flaw in ‘named’ can cause a small memory leak in key processing when using TKEY records in Diffie-Hellman mode with OpenSSL 3.0.0 and later versions. This flaw allows an attacker to gradually erode available memory to the point where ‘named’ crashes due to a lack of resources.
Statement: This flaw only affects versions BIND-9.18.0 and higher, whereas Red Hat ships BIND-9.16 and lower versions. Therefore, versions of BIND shipped with
Debian
CVE-2022-2906: bind9 - An attacker can leverage this flaw to gradually erode available memory to the po...
vendor_debian·2022·CVSS 7.5
CVE-2022-2906 [HIGH] CVE-2022-2906: bind9 - An attacker can leverage this flaw to gradually erode available memory to the po...
An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.
Scope: local
bookworm: resolved (fixed in 1:9.18.7-1)
bullseye: resolved
forky: resolved (fixed in 1:9.18.7-1)
sid: resolved (fixed in 1:9.18.7-1)
trixie: resolved (fixed in 1:9.18.7-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-09-21
Published