CVE-2024-1737
HIGH7.5EPSS 0.28%bind9 - security update
發布日:2024/7/23修改日:2025/12/3
也稱為:ALPINE-CVE-2024-1737
描述
Resolver caches and authoritative zone databases that hold significant numbers of RRs for the same hostname (of any RTYPE) can suffer from degraded performance as content is being added or updated, and also when handling client queries for this name. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.27, 9.19.0 through 9.19.24, 9.11.4-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.27-S1.
受影響套件(3)
- Alpine/bindfrom 0, < 9.18.31-r0
- Debian/bind9from 0, < 1:9.16.50-1~deb11u1
- Debian/bind9from 0, < 1:9.16.50-1~deb11u1
CVSS 分數
| 來源 | 版本 | 嚴重程度 | 向量 |
|---|---|---|---|
| osv | CVSS 3.1 | HIGH7.5 | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |