We found results for “”
CVE-2022-3736
Good to know:
Date: January 25, 2023
BIND 9 resolver can crash when stale cache and stale answers are enabled, option "stale-answer-client-timeout" is set to a positive integer, and the resolver receives an RRSIG query. This issue affects BIND 9 versions 9.16.12 through 9.16.36, 9.18.0 through 9.18.10, 9.19.0 through 9.19.8, and 9.16.12-S1 through 9.16.36-S1.
Severity Score
Related Resources (6)
Severity Score
Weakness Type (CWE)
Improper Input Validation
CWE-20Insufficient Information
NVD-CWE-noinfoTop Fix
Upgrade Version
Upgrade to version https://github.com/isc-projects/bind9.git - v9.16.37;https://github.com/isc-projects/bind9.git - v9.18.11;https://github.com/isc-projects/bind9.git - v9.19.9
CVSS v3.1
| Base Score: |
|
|---|---|
| Attack Vector (AV): | NETWORK |
| Attack Complexity (AC): | LOW |
| Privileges Required (PR): | NONE |
| User Interaction (UI): | NONE |
| Scope (S): | UNCHANGED |
| Confidentiality (C): | NONE |
| Integrity (I): | NONE |
| Availability (A): | HIGH |
Vulnerabilities
Projects
Contact Us


