High severity7.5NVD Advisory· Published Jan 16, 2019· Updated Jun 17, 2026
CVE-2017-3145
CVE-2017-3145
Description
BIND was improperly sequencing cleanup operations on upstream recursion fetch contexts, leading in some cases to a use-after-free error that can trigger an assertion failure and crash in named. Affects BIND 9.0.0 to 9.8.x, 9.9.0 to 9.9.11, 9.10.0 to 9.10.6, 9.11.0 to 9.11.2, 9.9.3-S1 to 9.9.11-S1, 9.10.5-S1 to 9.10.6-S1, 9.12.0a1 to 9.12.0rc1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
78- osv-coords35 versionspkg:apk/chainguard/bind-docpkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1-LTSSpkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4pkg:apk/wolfi/bind-pluginspkg:apk/chainguard/bindpkg:apk/chainguard/bind-devpkg:apk/chainguard/bind-dnssec-rootpkg:apk/chainguard/bind-dnssec-toolspkg:apk/chainguard/bind-libspkg:apk/chainguard/bind-pluginspkg:apk/chainguard/bind-toolspkg:apk/wolfi/bindpkg:apk/wolfi/bind-devpkg:apk/wolfi/bind-dnssec-rootpkg:apk/wolfi/bind-dnssec-toolspkg:apk/wolfi/bind-docpkg:apk/wolfi/bind-libspkg:apk/wolfi/bind-toolspkg:rpm/suse/bind&distro=SUSE%20OpenStack%20Cloud%206pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%20for%20Raspberry%20Pi%2012%20SP2pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Point%20of%20Sale%2011%20SP3pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP3-TERADATApkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP2pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3pkg:rpm/opensuse/bind&distro=openSUSE%20Tumbleweedpkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP3-LTSS
< 0+ 34 more
- (no CPE)range: < 0
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.9.6P1-0.51.7.1
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.9.6P1-0.51.7.1
- (no CPE)range: < 9.9.6P1-0.51.7.1
- (no CPE)range: < 9.9.6P1-0.51.7.1
- (no CPE)range: < 9.9.6P1-0.51.7.1
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.9.9P1-63.7.1
- (no CPE)range: < 9.16.20-1.4
- (no CPE)range: < 9.9.6P1-0.51.7.1
9.0.0 to 9.8.x, 9.9.0 to 9.9.11, 9.10.0 to 9.10.6, 9.11.0 to 9.11.2, 9.9.3-S1 to 9.9.11-S1, 9.10.5-S1 to 9.10.6-S1, 9.12.0a1 to 9.12.0rc1+ 10 more
- (no CPE)range: 9.0.0 to 9.8.x, 9.9.0 to 9.9.11, 9.10.0 to 9.10.6, 9.11.0 to 9.11.2, 9.9.3-S1 to 9.9.11-S1, 9.10.5-S1 to 9.10.6-S1, 9.12.0a1 to 9.12.0rc1
- (no CPE)range: 9.0.0 to 9.8.x, 9.9.0 to 9.9.11, 9.10.0 to 9.10.6, 9.11.0 to 9.11.2, 9.9.3-S1 to 9.9.11-S1, 9.10.5-S1 to 9.10.6-S1, 9.12.0a1 to 9.12.0rc1
- cpe:2.3:a:isc:bind:*:*:*:*:*:*:*:*range: >=9.4.0,<=9.8.8
- cpe:2.3:a:isc:bind:9.9.3:s1:*:*:*:*:*:*
- cpe:2.3:a:isc:bind:9.9.11:s1:*:*:*:*:*:*
- cpe:2.3:a:isc:bind:9.10.5:s1:*:*:*:*:*:*
- cpe:2.3:a:isc:bind:9.10.6:s1:*:*:*:*:*:*
- cpe:2.3:a:isc:bind:9.12.0:alpha1:*:*:*:*:*:*
- cpe:2.3:a:isc:bind:9.12.0:b1:*:*:*:*:*:*
- cpe:2.3:a:isc:bind:9.12.0:b2:*:*:*:*:*:*
- cpe:2.3:a:isc:bind:9.12.0:rc1:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_aus:6.4:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:o:redhat:enterprise_linux_server_aus:6.4:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_aus:6.5:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_aus:6.6:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_aus:7.2:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_eus:6.7:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:o:redhat:enterprise_linux_server_eus:6.7:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_eus:7.3:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_tus:6.6:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:redhat:enterprise_linux_server_tus:6.6:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_tus:7.2:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*
- cpe:2.3:a:netapp:data_ontap_edge:-:*:*:*:*:*:*:*
cpe:2.3:o:juniper:junos:12.1x46-d76:-:*:*:*:*:*:*+ 5 more
- cpe:2.3:o:juniper:junos:12.1x46-d76:-:*:*:*:*:*:*
- cpe:2.3:o:juniper:junos:12.3x48-d70:-:*:*:*:*:*:*
- cpe:2.3:o:juniper:junos:15.1x49-d140:-:*:*:*:*:*:*
- cpe:2.3:o:juniper:junos:17.4r2:-:*:*:*:*:*:*
- cpe:2.3:o:juniper:junos:18.1r2:-:*:*:*:*:*:*
- cpe:2.3:o:juniper:junos:18.2r1:-:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
11- www.securityfocus.com/bid/102716nvdBroken LinkThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1040195nvdBroken LinkThird Party AdvisoryVDB Entry
- access.redhat.com/errata/RHSA-2018:0101nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2018:0102nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2018:0487nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2018:0488nvdThird Party Advisory
- kb.isc.org/docs/aa-01542nvdVendor Advisory
- lists.debian.org/debian-lts-announce/2018/01/msg00029.htmlnvdMailing ListThird Party Advisory
- security.netapp.com/advisory/ntap-20180117-0003/nvdThird Party Advisory
- supportportal.juniper.net/s/article/2018-07-Security-Bulletin-SRX-Series-Vulnerabilities-in-ISC-BIND-namednvdThird Party Advisory
- www.debian.org/security/2018/dsa-4089nvdThird Party Advisory
News mentions
0No linked articles in our index yet.