CVE-2016-2776

CVSS v3.0 7.5 (High)
75% Progress
CVSS v2.0 7.8 (High)
78% Progress
EPSS 97.22 % (100th)
97.22% Progress
Affected Products 5
Advisories 20

buffer.c in named in ISC BIND 9 before 9.9.9-P3, 9.10.x before 9.10.4-P3, and 9.11.x before 9.11.0rc3 does not properly construct responses, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted query.

Weaknesses
CWE-20
Improper Input Validation
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2016-09-28 10:59:00
(8 years ago)
Updated Date
2019-12-27 16:08:55
(4 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Oracle Linux 5.0 cpe:2.3:o:oracle:linux:5.0
  Oracle Linux 6 cpe:2.3:o:oracle:linux:6
  Oracle Linux 7 cpe:2.3:o:oracle:linux:7

Configuration #2

    CPE23 From Up To
  Oracle Vm Server 3.2 cpe:2.3:o:oracle:vm_server:3.2
  Oracle Vm Server 3.3 cpe:2.3:o:oracle:vm_server:3.3
  Oracle Vm Server 3.4 cpe:2.3:o:oracle:vm_server:3.4

Configuration #3

    CPE23 From Up To
  Isc Bind P3 9.9.9 and prior versions cpe:2.3:a:isc:bind::p3 <= 9.9.9
  Isc Bind 9.10.0 cpe:2.3:a:isc:bind:9.10.0
  Isc Bind 9.10.0 A1 cpe:2.3:a:isc:bind:9.10.0:a1
  Isc Bind 9.10.0 A2 cpe:2.3:a:isc:bind:9.10.0:a2
  Isc Bind 9.10.0 B1 cpe:2.3:a:isc:bind:9.10.0:b1
  Isc Bind 9.10.0 B2 cpe:2.3:a:isc:bind:9.10.0:b2
  Isc Bind 9.10.0 P1 cpe:2.3:a:isc:bind:9.10.0:p1
  Isc Bind 9.10.0 P2 cpe:2.3:a:isc:bind:9.10.0:p2
  Isc Bind 9.10.0 Rc1 cpe:2.3:a:isc:bind:9.10.0:rc1
  Isc Bind 9.10.0 Rc2 cpe:2.3:a:isc:bind:9.10.0:rc2
  Isc Bind 9.10.1 cpe:2.3:a:isc:bind:9.10.1
  Isc Bind 9.10.1 B1 cpe:2.3:a:isc:bind:9.10.1:b1
  Isc Bind 9.10.1 B2 cpe:2.3:a:isc:bind:9.10.1:b2
  Isc Bind 9.10.1 P1 cpe:2.3:a:isc:bind:9.10.1:p1
  Isc Bind 9.10.1 P2 cpe:2.3:a:isc:bind:9.10.1:p2
  Isc Bind 9.10.1 Rc1 cpe:2.3:a:isc:bind:9.10.1:rc1
  Isc Bind 9.10.1 Rc2 cpe:2.3:a:isc:bind:9.10.1:rc2
  Isc Bind 9.10.2 B1 cpe:2.3:a:isc:bind:9.10.2:b1
  Isc Bind 9.10.2 P1 cpe:2.3:a:isc:bind:9.10.2:p1
  Isc Bind 9.10.2 P2 cpe:2.3:a:isc:bind:9.10.2:p2
  Isc Bind 9.10.2 P3 cpe:2.3:a:isc:bind:9.10.2:p3
  Isc Bind 9.10.2 P4 cpe:2.3:a:isc:bind:9.10.2:p4
  Isc Bind 9.10.2 Rc1 cpe:2.3:a:isc:bind:9.10.2:rc1
  Isc Bind 9.10.2 Rc2 cpe:2.3:a:isc:bind:9.10.2:rc2
  Isc Bind 9.10.3 cpe:2.3:a:isc:bind:9.10.3
  Isc Bind 9.10.3 B1 cpe:2.3:a:isc:bind:9.10.3:b1
  Isc Bind 9.10.3 P1 cpe:2.3:a:isc:bind:9.10.3:p1
  Isc Bind 9.10.3 P2 cpe:2.3:a:isc:bind:9.10.3:p2
  Isc Bind 9.10.3 P3 cpe:2.3:a:isc:bind:9.10.3:p3
  Isc Bind 9.10.3 P4 cpe:2.3:a:isc:bind:9.10.3:p4
  Isc Bind 9.10.3 Rc1 cpe:2.3:a:isc:bind:9.10.3:rc1
  Isc Bind 9.10.4 P2 cpe:2.3:a:isc:bind:9.10.4:p2
  Isc Bind 9.10.4 P3 cpe:2.3:a:isc:bind:9.10.4:p3
  Isc Bind 9.11.0 A1 cpe:2.3:a:isc:bind:9.11.0:a1
  Isc Bind 9.11.0 A2 cpe:2.3:a:isc:bind:9.11.0:a2
  Isc Bind 9.11.0 A3 cpe:2.3:a:isc:bind:9.11.0:a3
  Isc Bind 9.11.0 B1 cpe:2.3:a:isc:bind:9.11.0:b1
  Isc Bind 9.11.0 B2 cpe:2.3:a:isc:bind:9.11.0:b2
  Isc Bind 9.11.0 B3 cpe:2.3:a:isc:bind:9.11.0:b3
  Isc Bind 9.11.0 Rc1 cpe:2.3:a:isc:bind:9.11.0:rc1

Configuration #4

    CPE23 From Up To
  Hp-ux 11.31 cpe:2.3:o:hp:hp-ux:11.31

Configuration #5

    CPE23 From Up To
  Oracle Solaris 10.0 cpe:2.3:o:oracle:solaris:10.0
  Oracle Solaris 11.3 cpe:2.3:o:oracle:solaris:11.3
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...