VYPR

rpm package

suse/bind&distro=SUSE Enterprise Storage 5

pkg:rpm/suse/bind&distro=SUSE%20Enterprise%20Storage%205

Vulnerabilities (3)

  • CVE-2020-8617May 19, 2020
    affected < 9.9.9P1-63.17.1fixed 9.9.9P1-63.17.1

    Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an inconsistent state if the attacker knows (or successfully guesses) the name of a TSIG key used by the server. Since BIND, by default, configures a local session key even on servers whos

  • CVE-2020-8616May 19, 2020
    affected < 9.9.9P1-63.17.1fixed 9.9.9P1-63.17.1

    A malicious actor who intentionally exploits this lack of effective limitation on the number of fetches performed when processing referrals can, through the use of specially crafted referrals, cause a recursing server to issue a very large number of fetches in an attempt to proce

  • CVE-2018-5741Jan 16, 2019
    affected < 9.9.9P1-63.17.1fixed 9.9.9P1-63.17.1

    To provide fine-grained controls over the ability to use Dynamic DNS (DDNS) to update records in a zone, BIND 9 provides a feature called update-policy. Various rules can be configured to limit the types of updates that can be performed by a client, depending on the key used when