An "incorrect assumption" in the authvalidated validator function in BIND 9.3.0, when DNSSEC is enabled, allows remote attackers to cause a denial of service (named server exit) via crafted DNS packets that cause an internal consistency test (self-check) to fail.
References
Configurations
History
20 Nov 2024, 23:54
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/14008 - | |
References | () http://securitytracker.com/id?1012995 - | |
References | () http://www.isc.org/index.pl?/sw/bind/bind-security.php - Patch | |
References | () http://www.isc.org/index.pl?/sw/bind/bind9.php - | |
References | () http://www.kb.cert.org/vuls/id/938617 - Patch, US Government Resource | |
References | () http://www.securityfocus.com/bid/12365 - | |
References | () http://www.trustix.org/errata/2005/0003/ - | |
References | () http://www.uniras.gov.uk/niscc/docs/al-20050125-00060.html - Patch | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/19062 - |
Information
Published : 2005-05-02 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2005-0034
Mitre link : CVE-2005-0034
CVE.ORG link : CVE-2005-0034
JSON object : View
Products Affected
isc
- bind
CWE