CVE Vulnerabilities

CVE-2007-2925

Published: Jul 24, 2007 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The default access control lists (ACL) in ISC BIND 9.4.0, 9.4.1, and 9.5.0a1 through 9.5.0a5 do not set the allow-recursion and allow-query-cache ACLs, which allows remote attackers to make recursive queries and query the cache.

Affected Software

Name Vendor Start Version End Version
Bind Isc 9.4.0 (including) 9.4.0 (including)
Bind Isc 9.4.1 (including) 9.4.1 (including)
Bind Isc 9.5.0 (including) 9.5.0 (including)

References