Back

MEDIUM

A buffer boundary check assertion in rdataset.c can fail incorrectly during zone transfer

Published Jun 17, 2020

Description

In ISC BIND9 versions BIND 9.11.14 -> 9.11.19, BIND 9.14.9 -> 9.14.12, BIND 9.16.0 -> 9.16.3, BIND Supported Preview Edition 9.11.14-S1 -> 9.11.19-S1: Unless a nameserver is providing authoritative service for one or more zones and at least one zone contains an empty non-terminal entry containing an asterisk ("*") character, this defect cannot be encountered. A would-be attacker who is allowed to change zone content could theoretically introduce such a record in order to exploit this condition to cause denial of service, though we consider the use of this vector unlikely because any such attack would require a significant privilege level and be easily traceable.

Affected products

Remediation

Vendor solution

Upgrade to the patched release most closely related to your current version of BIND:

BIND 9.11.20 BIND 9.16.4

BIND Supported Preview Edition is a special feature preview branch of BIND provided to eligible ISC support customers.

BIND 9.11.20-S1

Red Hat statement

Based on upstream affected versions, this flaw only affects the versions of bind shipped with Red Hat Enterprise Linux 8.

Red Hat mitigation

As per upstream advisory: Unless a nameserver is providing authoritative service for one or more zones and at least one zone contains an empty non-terminal entry containing an asterisk ("*") character this defect cannot be encountered. A would-be attacker who is allowed to change zone content could theoretically introduce such a record in order to exploit this condition to cause denial of service, though we consider the use of this vector unlikely because any such attack would require a significant privilege level and be easily traceable.

References (13)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner isc
Published Jun 17, 2020
Updated Sep 17, 2024
Reserved Feb 5, 2020
NVD
Status Modified
Modified Sep 1, 2026
Red Hat
Severity Moderate
Public date Jun 17, 2020
ENISA EUVD
Assigner isc
Published Jun 17, 2020
Updated Sep 17, 2024
Exploited since n/a
EUVD-2020-29467