ISC / Bind
182 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2011-2464 | bind: Specially constructed packet will cause named to exit | MEDIUM | 5.0 | Jul 8, 2011 |
| CVE-2011-1910 | bind: Large RRSIG RRsets and Negative Caching can crash named | MEDIUM | 5.0 | May 31, 2011 |
| CVE-2011-1907 | bind: RRSIG queries can trigger server crash when using Response Policy Zones (RPZ) | MEDIUM | 5.0 | May 9, 2011 |
| CVE-2011-0414 | bind: named lockup with IXFR or DDNS update and a high query rate | HIGH | 7.1 | Feb 23, 2011 |
| CVE-2010-3615 | bind: allow-query processed incorrectly allowing access to authoritative zones that should be restricted | MEDIUM | 5.0 | Dec 3, 2010 |
| CVE-2010-3614 | bind: key algorithm rollover may mark secure answers as insecure | MEDIUM | 6.4 | Dec 3, 2010 |
| CVE-2010-3613 | bind: failure to clear existing RRSIG records when a NO DATA is negatively cached could DoS named | MEDIUM | 4.0 | Dec 3, 2010 |
| CVE-2010-3762 | Bind: DoS (assertion failure) via a DNS query with bad signatures | MEDIUM | 4.3 | Oct 5, 2010 |
| CVE-2010-0218 | Bind: Unitended availability of cache data. | MEDIUM | 5.0 | Oct 5, 2010 |
| CVE-2010-0213 | BIND: DoS (infinite loop of RRSIGs queries to authoritative servers) via certain RRSIG query | LOW | 2.6 | Jul 27, 2010 |
| CVE-2010-0382 | bind: out-of-bailiwick data vulnerability due to regression while fixing CVE-2009-4022 | HIGH | 7.6 | Jan 22, 2010 |
| CVE-2010-0290 | BIND upstream fix for CVE-2009-4022 is incomplete | MEDIUM | 4.0 | Jan 22, 2010 |
| CVE-2010-0097 | BIND DNSSEC NSEC/NSEC3 validation code could cause bogus NXDOMAIN responses | MEDIUM | 4.3 | Jan 22, 2010 |
| CVE-2009-4022 | bind: cache poisoning using not validated DNSSEC responses | LOW | 2.6 | Nov 25, 2009 |
| CVE-2009-0696 | bind: DoS (assertion failure) via nsupdate packets | MEDIUM | 4.3 | Jul 29, 2009 |
| CVE-2009-0265 | Internet Systems Consortium (ISC) BIND 9.6.0 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remot… | HIGH | 7.5 | Jan 26, 2009 |
| CVE-2009-0025 | bind: DSA_do_verify() returns check issue | MEDIUM | 6.8 | Jan 7, 2009 |
| CVE-2008-4163 | Unspecified vulnerability in ISC BIND 9.3.5-P2-W1, 9.4.2-P2-W1, and 9.5.0-P2-W1 on Windows allows remote attackers to cause a denial of service (UDP client han… | HIGH | 7.8 | Sep 22, 2008 |
| CVE-2008-1447 | bind: implement source UDP port randomization (CERT VU#800113) | MEDIUM | 6.8 | Jul 8, 2008 |
| CVE-2008-0122 | libbind off-by-one buffer overflow | HIGH | 10.0 | Jan 16, 2008 |
| CVE-2007-2930 | The (1) NSID_SHUFFLE_ONLY and (2) NSID_USE_POOL PRNG algorithms in ISC BIND 8 before 8.4.7-P1 generate predictable DNS query identifiers when sending outgoing… | MEDIUM | 4.3 | Sep 12, 2007 |
| CVE-2007-2926 | bind cryptographically weak query ids | MEDIUM | 4.3 | Jul 24, 2007 |
| CVE-2007-2925 | bind allow-query-cache/allow-recursion default ACL issue | MEDIUM | 5.8 | Jul 24, 2007 |
| CVE-2007-2241 | bind remote DoS | HIGH | 7.1 | May 2, 2007 |
| CVE-2007-0494 | BIND dnssec denial of service | MEDIUM | 4.3 | Jan 25, 2007 |
Showing 126 to 150 of 182 CVEs