CVE-2018-5745

CVSS v3.1 4.9 (Medium)
49% Progress
CVSS v2.0 3.5 (Low)
35% Progress
EPSS 0.08 % (35th)
0.08% Progress
Affected Products 1
Advisories 15

"managed-keys" is a feature which allows a BIND resolver to automatically maintain the keys used by trust anchors which operators configure for use in DNSSEC validation. Due to an error in the managed-keys feature it is possible for a BIND server which uses managed-keys to exit due to an assertion failure if, during key rollover, a trust anchor's keys are replaced with keys which use an unsupported algorithm. Versions affected: BIND 9.9.0 -> 9.10.8-P1, 9.11.0 -> 9.11.5-P1, 9.12.0 -> 9.12.3-P1, and versions 9.9.3-S1 -> 9.11.5-S3 of BIND 9 Supported Preview Edition. Versions 9.13.0 -> 9.13.6 of the 9.13 development branch are also affected. Versions prior to BIND 9.9.0 have not been evaluated for vulnerability to CVE-2018-5745.

Weaknesses
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
Related CVEs
CVE Status
PUBLISHED
CNA
Internet Systems Consortium (ISC)
Published Date
2019-10-09 16:15:14
(5 years ago)
Updated Date
2019-11-06 01:15:18
(4 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Isc Bind from 9.9.0 version and 9.10.7 and prior versions cpe:2.3:a:isc:bind >= 9.9.0 <= 9.10.7
  Isc Bind from 9.11.0 version and 9.11.4 and prior versions cpe:2.3:a:isc:bind >= 9.11.0 <= 9.11.4
  Isc Bind from 9.12.0 version and 9.12.2 and prior versions cpe:2.3:a:isc:bind >= 9.12.0 <= 9.12.2
  Isc Bind from 9.13.0 version and 9.13.6 and prior versions cpe:2.3:a:isc:bind >= 9.13.0 <= 9.13.6
  Isc Bind 9.9.3 S1 for Supported Preview cpe:2.3:a:isc:bind:9.9.3:s1:*:*:*:supported_preview
  Isc Bind 9.10.7 cpe:2.3:a:isc:bind:9.10.7:-
  Isc Bind 9.10.8 P1 cpe:2.3:a:isc:bind:9.10.8:p1
  Isc Bind 9.11.5 cpe:2.3:a:isc:bind:9.11.5:-
  Isc Bind 9.11.5 P1 cpe:2.3:a:isc:bind:9.11.5:p1
  Isc Bind 9.11.5 S3 for Supported Preview cpe:2.3:a:isc:bind:9.11.5:s3:*:*:*:supported_preview
  Isc Bind 9.12.3 cpe:2.3:a:isc:bind:9.12.3:-
  Isc Bind 9.12.3 P1 cpe:2.3:a:isc:bind:9.12.3:p1
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...