CVE-2024-1737
published 2024-07-23CVE-2024-1737: Resolver caches and authoritative zone databases that hold significant numbers of RRs for the same hostname (of any RTYPE) can suffer from degraded performance…
high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
Resolver caches and authoritative zone databases that hold significant numbers of RRs for the same hostname (of any RTYPE) can suffer from degraded performance as content is being added or updated, and also when handling client queries for this name.
This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.27, 9.19.0 through 9.19.24, 9.11.4-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.27-S1.
Affected
28 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | bind9 | < bind9 1:9.18.28-1~deb12u1 (bookworm) | bind9 1:9.18.28-1~deb12u1 (bookworm) |
| isc | bind | >= 0 < 9.18.31-r0 | 9.18.31-r0 |
| isc | bind | >= 0 < 9.18.31-r0 | 9.18.31-r0 |
| isc | bind | >= 0 < 9.18.31-r0 | 9.18.31-r0 |
| isc | bind | >= 0 < 9.18.31-r0 | 9.18.31-r0 |
| isc | bind | >= 0 < 9.18.28-r0 | 9.18.28-r0 |
| isc | bind | >= 0 < 9.18.28-r0 | 9.18.28-r0 |
| isc | bind | >= 0 < 9.18.28-r0 | 9.18.28-r0 |
| isc | bind9 | >= 0 < 1:9.16.50-1~deb11u1 | 1:9.16.50-1~deb11u1 |
| isc | bind9 | >= 0 < 1:9.18.28-1~deb12u1 | 1:9.18.28-1~deb12u1 |
| isc | bind9 | >= 0 < 1:9.20.0-1 | 1:9.20.0-1 |
| isc | bind9 | >= 0 < 1:9.20.0-1 | 1:9.20.0-1 |
| isc | bind9 | >= 0 < 1:9.18.28-0ubuntu0.20.04.1 | 1:9.18.28-0ubuntu0.20.04.1 |
| isc | bind9 | >= 0 < 1:9.18.28-0ubuntu0.22.04.1 | 1:9.18.28-0ubuntu0.22.04.1 |
| isc | bind9 | >= 0 < 1:9.18.28-0ubuntu0.24.04.1 | 1:9.18.28-0ubuntu0.24.04.1 |
| isc | bind9 | >= 0 < 1:9.10.3.dfsg.P4-8ubuntu1.19+esm9 | 1:9.10.3.dfsg.P4-8ubuntu1.19+esm9 |
| isc | bind9 | >= 0 < 1:9.11.3+dfsg-1ubuntu1.19+esm4 | 1:9.11.3+dfsg-1ubuntu1.19+esm4 |
| isc | bind_9 | 9.11.0 – 9.11.37 | — |
| isc | bind_9 | 9.11.4-S1 – 9.11.37-S1 | — |
| isc | bind_9 | 9.16.0 – 9.16.50 | — |
| isc | bind_9 | 9.16.8-S1 – 9.16.50-S1 | — |
| isc | bind_9 | 9.18.0 – 9.18.27 | — |
| isc | bind_9 | 9.18.11-S1 – 9.18.27-S1 | — |
| isc | bind_9 | 9.19.0 – 9.19.24 | — |
| msrc | azl3_bind_9.19.21-1_on_azure_linux_3.0 | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH