CVE Vulnerabilities

CVE-2007-2925

Published: Jul 24, 2007 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

The default access control lists (ACL) in ISC BIND 9.4.0, 9.4.1, and 9.5.0a1 through 9.5.0a5 do not set the allow-recursion and allow-query-cache ACLs, which allows remote attackers to make recursive queries and query the cache.

Affected Software

Name Vendor Start Version End Version
Bind Isc 9.4.0 (including) 9.4.0 (including)
Bind Isc 9.4.1 (including) 9.4.1 (including)
Bind Isc 9.5.0 (including) 9.5.0 (including)
Bind9 Ubuntu dapper *
Bind9 Ubuntu devel *
Bind9 Ubuntu edgy *
Bind9 Ubuntu feisty *

References