[RHSA-2024:5231] bind and bind-dyndb-ldap security update
The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.
Security Fix(es):
bind: bind9: BIND's database will be slow if a very large number of RRs exist at the same nam (CVE-2024-1737)
bind9: bind: SIG(0) can be used to exhaust CPU resources (CVE-2024-1975)
bind: bind9: Assertion failure when serving both stale cache data and authoritative zone content (CVE-2024-4076)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
- ID
- RHSA-2024:5231
- Severity
- important
- URL
- https://access.redhat.com/errata/RHSA-2024:5231
- Published
-
2024-08-15T00:00:00
(4 weeks ago) - Modified
-
2024-08-15T00:00:00
(4 weeks ago) - Rights
- Copyright 2024 Red Hat, Inc.
- Other Advisories
-
- ALAS2-2024-2616
- ALPINE:CVE-2024-1737
- ALPINE:CVE-2024-1975
- ALPINE:CVE-2024-4076
- ALSA-2024:5231
- ALSA-2024:5390
- ALSA-2024:5524
- DSA-5734-1
- ELSA-2024-5231
- ELSA-2024-5390
- ELSA-2024-5524
- FEDORA-2024-8af1780fdf
- FEDORA-2024-ef8a7031e7
- RHSA-2024:5390
- RHSA-2024:5524
- SSA:2024-205-01
- SUSE-SU-2024:2636-1
- SUSE-SU-2024:2810-1
- SUSE-SU-2024:2811-1
- SUSE-SU-2024:2862-1
- SUSE-SU-2024:2863-1
- SUSE-SU-2024:2868-1
- USN-6909-1
- USN-6909-2
- USN-6909-3
Source | # ID | Name | URL |
---|---|---|---|
Bugzilla | 2298893 | https://bugzilla.redhat.com/2298893 | |
Bugzilla | 2298901 | https://bugzilla.redhat.com/2298901 | |
Bugzilla | 2298904 | https://bugzilla.redhat.com/2298904 | |
RHSA | RHSA-2024:5231 | https://access.redhat.com/errata/RHSA-2024:5231 | |
CVE | CVE-2024-1737 | https://access.redhat.com/security/cve/CVE-2024-1737 | |
CVE | CVE-2024-1975 | https://access.redhat.com/security/cve/CVE-2024-1975 | |
CVE | CVE-2024-4076 | https://access.redhat.com/security/cve/CVE-2024-4076 |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/redhat/python3-bind?distro=redhat-9.4 | redhat | python3-bind | < 9.16.23-18.el9_4.6 | redhat-9.4 | ||
Affected | pkg:rpm/redhat/bind?arch=x86_64&distro=redhat-9.4 | redhat | bind | < 9.16.23-18.el9_4.6 | redhat-9.4 | x86_64 | |
Affected | pkg:rpm/redhat/bind?arch=s390x&distro=redhat-9.4 | redhat | bind | < 9.16.23-18.el9_4.6 | redhat-9.4 | s390x | |
Affected | pkg:rpm/redhat/bind?arch=ppc64le&distro=redhat-9.4 | redhat | bind | < 9.16.23-18.el9_4.6 | redhat-9.4 | ppc64le | |
Affected | pkg:rpm/redhat/bind?arch=aarch64&distro=redhat-9.4 | redhat | bind | < 9.16.23-18.el9_4.6 | redhat-9.4 | aarch64 | |
Affected | pkg:rpm/redhat/bind-utils?arch=x86_64&distro=redhat-9.4 | redhat | bind-utils | < 9.16.23-18.el9_4.6 | redhat-9.4 | x86_64 | |
Affected | pkg:rpm/redhat/bind-utils?arch=s390x&distro=redhat-9.4 | redhat | bind-utils | < 9.16.23-18.el9_4.6 | redhat-9.4 | s390x | |
Affected | pkg:rpm/redhat/bind-utils?arch=ppc64le&distro=redhat-9.4 | redhat | bind-utils | < 9.16.23-18.el9_4.6 | redhat-9.4 | ppc64le | |
Affected | pkg:rpm/redhat/bind-utils?arch=aarch64&distro=redhat-9.4 | redhat | bind-utils | < 9.16.23-18.el9_4.6 | redhat-9.4 | aarch64 | |
Affected | pkg:rpm/redhat/bind-license?distro=redhat-9.4 | redhat | bind-license | < 9.16.23-18.el9_4.6 | redhat-9.4 | ||
Affected | pkg:rpm/redhat/bind-libs?arch=x86_64&distro=redhat-9.4 | redhat | bind-libs | < 9.16.23-18.el9_4.6 | redhat-9.4 | x86_64 | |
Affected | pkg:rpm/redhat/bind-libs?arch=s390x&distro=redhat-9.4 | redhat | bind-libs | < 9.16.23-18.el9_4.6 | redhat-9.4 | s390x | |
Affected | pkg:rpm/redhat/bind-libs?arch=ppc64le&distro=redhat-9.4 | redhat | bind-libs | < 9.16.23-18.el9_4.6 | redhat-9.4 | ppc64le | |
Affected | pkg:rpm/redhat/bind-libs?arch=i686&distro=redhat-9.4 | redhat | bind-libs | < 9.16.23-18.el9_4.6 | redhat-9.4 | i686 | |
Affected | pkg:rpm/redhat/bind-libs?arch=aarch64&distro=redhat-9.4 | redhat | bind-libs | < 9.16.23-18.el9_4.6 | redhat-9.4 | aarch64 | |
Affected | pkg:rpm/redhat/bind-dyndb-ldap?arch=x86_64&distro=redhat-9.4 | redhat | bind-dyndb-ldap | < 11.9-10.el9_4 | redhat-9.4 | x86_64 | |
Affected | pkg:rpm/redhat/bind-dyndb-ldap?arch=s390x&distro=redhat-9.4 | redhat | bind-dyndb-ldap | < 11.9-10.el9_4 | redhat-9.4 | s390x | |
Affected | pkg:rpm/redhat/bind-dyndb-ldap?arch=ppc64le&distro=redhat-9.4 | redhat | bind-dyndb-ldap | < 11.9-10.el9_4 | redhat-9.4 | ppc64le | |
Affected | pkg:rpm/redhat/bind-dyndb-ldap?arch=aarch64&distro=redhat-9.4 | redhat | bind-dyndb-ldap | < 11.9-10.el9_4 | redhat-9.4 | aarch64 | |
Affected | pkg:rpm/redhat/bind-doc?distro=redhat-9.4 | redhat | bind-doc | < 9.16.23-18.el9_4.6 | redhat-9.4 | ||
Affected | pkg:rpm/redhat/bind-dnssec-utils?arch=x86_64&distro=redhat-9.4 | redhat | bind-dnssec-utils | < 9.16.23-18.el9_4.6 | redhat-9.4 | x86_64 | |
Affected | pkg:rpm/redhat/bind-dnssec-utils?arch=s390x&distro=redhat-9.4 | redhat | bind-dnssec-utils | < 9.16.23-18.el9_4.6 | redhat-9.4 | s390x | |
Affected | pkg:rpm/redhat/bind-dnssec-utils?arch=ppc64le&distro=redhat-9.4 | redhat | bind-dnssec-utils | < 9.16.23-18.el9_4.6 | redhat-9.4 | ppc64le | |
Affected | pkg:rpm/redhat/bind-dnssec-utils?arch=aarch64&distro=redhat-9.4 | redhat | bind-dnssec-utils | < 9.16.23-18.el9_4.6 | redhat-9.4 | aarch64 | |
Affected | pkg:rpm/redhat/bind-dnssec-doc?distro=redhat-9.4 | redhat | bind-dnssec-doc | < 9.16.23-18.el9_4.6 | redhat-9.4 | ||
Affected | pkg:rpm/redhat/bind-devel?arch=x86_64&distro=redhat-9.4 | redhat | bind-devel | < 9.16.23-18.el9_4.6 | redhat-9.4 | x86_64 | |
Affected | pkg:rpm/redhat/bind-devel?arch=s390x&distro=redhat-9.4 | redhat | bind-devel | < 9.16.23-18.el9_4.6 | redhat-9.4 | s390x | |
Affected | pkg:rpm/redhat/bind-devel?arch=ppc64le&distro=redhat-9.4 | redhat | bind-devel | < 9.16.23-18.el9_4.6 | redhat-9.4 | ppc64le | |
Affected | pkg:rpm/redhat/bind-devel?arch=i686&distro=redhat-9.4 | redhat | bind-devel | < 9.16.23-18.el9_4.6 | redhat-9.4 | i686 | |
Affected | pkg:rpm/redhat/bind-devel?arch=aarch64&distro=redhat-9.4 | redhat | bind-devel | < 9.16.23-18.el9_4.6 | redhat-9.4 | aarch64 | |
Affected | pkg:rpm/redhat/bind-chroot?arch=x86_64&distro=redhat-9.4 | redhat | bind-chroot | < 9.16.23-18.el9_4.6 | redhat-9.4 | x86_64 | |
Affected | pkg:rpm/redhat/bind-chroot?arch=s390x&distro=redhat-9.4 | redhat | bind-chroot | < 9.16.23-18.el9_4.6 | redhat-9.4 | s390x | |
Affected | pkg:rpm/redhat/bind-chroot?arch=ppc64le&distro=redhat-9.4 | redhat | bind-chroot | < 9.16.23-18.el9_4.6 | redhat-9.4 | ppc64le | |
Affected | pkg:rpm/redhat/bind-chroot?arch=aarch64&distro=redhat-9.4 | redhat | bind-chroot | < 9.16.23-18.el9_4.6 | redhat-9.4 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |