Improper fetch cleanup sequencing in the resolver can cause named to crash
Published Jan 16, 2019
7.5
HIGHCVSS 3.1
EPSS 27.93%
Description
BIND was improperly sequencing cleanup operations on upstream recursion fetch contexts, leading in some cases to a use-after-free error that can trigger an assertion failure and crash in named. Affects BIND 9.0.0 to 9.8.x, 9.9.0 to 9.9.11, 9.10.0 to 9.10.6, 9.11.0 to 9.11.2, 9.9.3-S1 to 9.9.11-S1, 9.10.5-S1 to 9.10.6-S1, 9.12.0a1 to 9.12.0rc1.
Affected products
-
- Version 9.0.0 to 9.8.x, 9.9.0 to 9.9.11, 9.10.0 to 9.10.6, 9.11.0 to 9.11.2, 9.9.3-S1 to 9.9.11-S1, 9.10.5-S1 to 9.10.6-S1, 9.12.0a1 to 9.12.0rc1StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
Configuration 1
- ≥ 9.4.0 · ≤ 9.8.8
- ≥ 9.9.0 · ≤ 9.9.11
- ≥ 9.10.0 · ≤ 9.10.6
- ≥ 9.11.0 · ≤ 9.11.2
- 9.9.3
- 9.9.11
- 9.10.5
- 9.10.6
- 9.12.0
- 9.12.0
- 9.12.0
- 9.12.0
Configuration 2
- 6.0
- 7.0
- 6.0
- 7.0
- 6.4
- 6.5
- 6.6
- 7.2
- 7.3
- 7.4
- 7.6
- 6.7
- 7.3
- 7.4
- 7.5
- 7.6
- 6.6
- 7.2
- 7.3
- 7.6
- 6.0
- 7.0
Configuration 3
- 7.0
- 8.0
- 9.0
Configuration 4
- n/a
Configuration 5
Running on/with
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
No data.
Red Hat Enterprise Linux 6
bind-32:9.8.2-0.62.rc1.el6_9.5
Fixed · RHSA-2018:0101
Red Hat Enterprise Linux 6.4 Advanced Update Support
bind-32:9.8.2-0.17.rc1.el6_4.13
Fixed · RHSA-2018:0487
Red Hat Enterprise Linux 6.5 Advanced Update Support
bind-32:9.8.2-0.23.rc1.el6_5.8
Fixed · RHSA-2018:0487
Red Hat Enterprise Linux 6.6 Advanced Update Support
bind-32:9.8.2-0.30.rc1.el6_6.10
Fixed · RHSA-2018:0487
Red Hat Enterprise Linux 6.6 Telco Extended Update Support
bind-32:9.8.2-0.30.rc1.el6_6.10
Fixed · RHSA-2018:0487
Red Hat Enterprise Linux 6.7 Extended Update Support
bind-32:9.8.2-0.37.rc1.el6_7.12
Fixed · RHSA-2018:0487
Red Hat Enterprise Linux 7
bind-32:9.9.4-51.el7_4.2
Fixed · RHSA-2018:0102
Red Hat Enterprise Linux 7.2 Advanced Update Support
bind-32:9.9.4-29.el7_2.8
Fixed · RHSA-2018:0488
Red Hat Enterprise Linux 7.2 Telco Extended Update Support
bind-32:9.9.4-29.el7_2.8
Fixed · RHSA-2018:0488
Red Hat Enterprise Linux 7.2 Update Services for SAP Solutions
bind-32:9.9.4-29.el7_2.8
Fixed · RHSA-2018:0488
Red Hat Enterprise Linux 7.3 Extended Update Support
bind-32:9.9.4-50.el7_3.3
Fixed · RHSA-2018:0488
Red Hat Enterprise Linux 5
bind
Will not fix
Red Hat Enterprise Linux 8
bind
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | bind-32:9.8.2-0.62.rc1.el6_9.5 | Fixed | RHSA-2018:0101 |
| Red Hat Enterprise Linux 6.4 Advanced Update Support | bind-32:9.8.2-0.17.rc1.el6_4.13 | Fixed | RHSA-2018:0487 |
| Red Hat Enterprise Linux 6.5 Advanced Update Support | bind-32:9.8.2-0.23.rc1.el6_5.8 | Fixed | RHSA-2018:0487 |
| Red Hat Enterprise Linux 6.6 Advanced Update Support | bind-32:9.8.2-0.30.rc1.el6_6.10 | Fixed | RHSA-2018:0487 |
| Red Hat Enterprise Linux 6.6 Telco Extended Update Support | bind-32:9.8.2-0.30.rc1.el6_6.10 | Fixed | RHSA-2018:0487 |
| Red Hat Enterprise Linux 6.7 Extended Update Support | bind-32:9.8.2-0.37.rc1.el6_7.12 | Fixed | RHSA-2018:0487 |
| Red Hat Enterprise Linux 7 | bind-32:9.9.4-51.el7_4.2 | Fixed | RHSA-2018:0102 |
| Red Hat Enterprise Linux 7.2 Advanced Update Support | bind-32:9.9.4-29.el7_2.8 | Fixed | RHSA-2018:0488 |
| Red Hat Enterprise Linux 7.2 Telco Extended Update Support | bind-32:9.9.4-29.el7_2.8 | Fixed | RHSA-2018:0488 |
| Red Hat Enterprise Linux 7.2 Update Services for SAP Solutions | bind-32:9.9.4-29.el7_2.8 | Fixed | RHSA-2018:0488 |
| Red Hat Enterprise Linux 7.3 Extended Update Support | bind-32:9.9.4-50.el7_3.3 | Fixed | RHSA-2018:0488 |
| Red Hat Enterprise Linux 5 | bind | Will not fix | n/a |
| Red Hat Enterprise Linux 8 | bind | Not affected | n/a |
No package ranges for this CVE.
Remediation
Vendor solution
Upgrade to the patched release most closely related to your current version of BIND. These can all be downloaded from http://www.isc.org/downloads.
BIND 9 version 9.9.11-P1 BIND 9 version 9.10.6-P1 BIND 9 version 9.11.2-P1 BIND 9 version 9.12.0rc2
BIND Supported Preview Edition is a special feature preview branch of BIND provided to eligible ISC support customers.
BIND 9 version 9.9.11-S2 BIND 9 version 9.10.6-S2
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
AV:N/AC:L/Au:N/C:N/I:N/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2021–2026- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (35 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 27.93% (0.27930) | 98.05th | v5 (v2026.06.15) |
| Jun 23, 2026 | 27.93% (0.27930) | 97.84th | v5 (v2026.06.15) |
| Jun 15, 2026 | 42.46% (0.42457) | 98.52th | v5 (v2026.06.15) |
| Mar 29, 2026 | 7.99% (0.07990) | 92.05th | v4 (v2025.03.14) |
| Mar 24, 2026 | 22.91% (0.22915) | 95.84th | v4 (v2025.03.14) |
| Mar 3, 2026 | 18.66% (0.18659) | 95.18th | v4 (v2025.03.14) |
| Feb 7, 2026 | 7.94% (0.07935) | 91.85th | v4 (v2025.03.14) |
| Jan 25, 2026 | 10.37% (0.10372) | 93.01th | v4 (v2025.03.14) |
| Jan 20, 2026 | 8.86% (0.08863) | 92.30th | v4 (v2025.03.14) |
| Oct 19, 2025 | 10.30% (0.10299) | 92.82th | v4 (v2025.03.14) |
| Jul 17, 2025 | 5.77% (0.05766) | 90.06th | v4 (v2025.03.14) |
| Jul 13, 2025 | 10.30% (0.10299) | 92.82th | v4 (v2025.03.14) |
| Jun 19, 2025 | 14.31% (0.14308) | 94.05th | v4 (v2025.03.14) |
| May 17, 2025 | 12.11% (0.12105) | 93.41th | v4 (v2025.03.14) |
| Apr 14, 2025 | 14.31% (0.14308) | 93.83th | v4 (v2025.03.14) |
| Mar 30, 2025 | 11.36% (0.11355) | 92.92th | v4 (v2025.03.14) |
| Mar 29, 2025 | 9.10% (0.09099) | 87.64th | v4 (v2025.03.14) |
| Mar 17, 2025 | 11.36% (0.11355) | 93.02th | v4 (v2025.03.14) |
| Mar 13, 2025 | 4.95% (0.04951) | 92.90th | v3 (v2023.03.01) |
| Dec 26, 2024 | 6.84% (0.06845) | 93.82th | v3 (v2023.03.01) |
| Oct 31, 2024 | 5.54% (0.05545) | 93.43th | v3 (v2023.03.01) |
| Sep 17, 2024 | 8.98% (0.08980) | 94.72th | v3 (v2023.03.01) |
| Apr 21, 2024 | 6.25% (0.06254) | 93.51th | v3 (v2023.03.01) |
| Mar 13, 2024 | 5.53% (0.05533) | 93.04th | v3 (v2023.03.01) |
| Feb 8, 2024 | 7.63% (0.07627) | 93.91th | v3 (v2023.03.01) |
| Jan 10, 2024 | 12.62% (0.12616) | 94.95th | v3 (v2023.03.01) |
| Jun 22, 2023 | 9.68% (0.09675) | 93.94th | v3 (v2023.03.01) |
| Mar 7, 2023 | 7.07% (0.07072) | 92.89th | v3 (v2023.03.01) |
| Mar 6, 2023 | 3.36% (0.03358) | 84.40th | v2 (v2022.01.01) |
| Apr 1, 2022 | 3.36% (0.03358) | 82.80th | v2 (v2022.01.01) |
| Feb 4, 2022 | 3.36% (0.03358) | 65.90th | v2 (v2022.01.01) |
| Feb 3, 2022 | 2.27% (0.02273) | 50.89th | v1 |
| Jan 6, 2022 | 2.27% (0.02273) | 50.38th | v1 |
| Sep 1, 2021 | 2.27% (0.02273) | 77.89th | v1 |
| Apr 14, 2021 | 2.27% (0.02273) | 0.00th | v1 |
References (16)
- http://www.securityfocus.com/bid/102716 vdb-entryx_refsource_BIDBroken LinkThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1040195 vdb-entryx_refsource_SECTRACKBroken LinkThird Party AdvisoryVDB Entry
- https://access.redhat.com/errata/RHSA-2018:0101 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2018:0102 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2018:0487 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2018:0488 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2017-3145 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1534812 Issue Tracking
- https://kb.isc.org/article/AA-01542
- https://kb.isc.org/docs/aa-01542 x_refsource_CONFIRMVendor Advisory
- https://lists.debian.org/debian-lts-announce/2018/01/msg00029.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2017-3145
- https://security.netapp.com/advisory/ntap-20180117-0003/ x_refsource_CONFIRMThird Party Advisory
- https://supportportal.juniper.net/s/article/2018-07-Security-Bulletin-SRX-Series-Vulnerabilities-in-ISC-BIND-named vendor-advisoryx_refsource_CONFIRMThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2017-3145
- https://www.debian.org/security/2018/dsa-4089 vendor-advisoryx_refsource_DEBIANThird Party Advisory
Change history (0)
No recorded changes yet.