Back

MEDIUM

Bind: Unitended availability of cache data.

Published Oct 5, 2010

Description

ISC BIND 9.7.2 through 9.7.2-P1 uses an incorrect ACL to restrict the ability of Recursion Desired (RD) queries to access the cache, which allows remote attackers to obtain potentially sensitive information via a DNS query.

Affected products

Remediation

Red Hat statement

Not vulnerable. This issue did not affect the versions of bind package as shipped with Red Hat Enterprise Linux 3, 4, or 5.

Metrics

Weaknesses (1)

References (7)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner certcc
Published Oct 5, 2010
Updated Sep 16, 2024
Reserved Jan 6, 2010
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity n/a
Public date Sep 28, 2010