CVE Vulnerabilities

CVE-2009-4008

Published: Jun 02, 2011 | Modified: Jun 14, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Unbound before 1.4.4 does not send responses for signed zones after mishandling an unspecified query, which allows remote attackers to cause a denial of service (DNSSEC outage) via a crafted query.

Affected Software

Name Vendor Start Version End Version
Unbound Nlnetlabs * 1.4.3 (including)
Unbound Nlnetlabs 0.0 (including) 0.0 (including)
Unbound Nlnetlabs 0.1 (including) 0.1 (including)
Unbound Nlnetlabs 0.2 (including) 0.2 (including)
Unbound Nlnetlabs 0.3 (including) 0.3 (including)
Unbound Nlnetlabs 0.4 (including) 0.4 (including)
Unbound Nlnetlabs 0.5 (including) 0.5 (including)
Unbound Nlnetlabs 0.6 (including) 0.6 (including)
Unbound Nlnetlabs 0.7 (including) 0.7 (including)
Unbound Nlnetlabs 0.7.1 (including) 0.7.1 (including)
Unbound Nlnetlabs 0.7.2 (including) 0.7.2 (including)
Unbound Nlnetlabs 0.8 (including) 0.8 (including)
Unbound Nlnetlabs 0.09 (including) 0.09 (including)
Unbound Nlnetlabs 0.10 (including) 0.10 (including)
Unbound Nlnetlabs 0.11 (including) 0.11 (including)
Unbound Nlnetlabs 1.0.0 (including) 1.0.0 (including)
Unbound Nlnetlabs 1.0.1 (including) 1.0.1 (including)
Unbound Nlnetlabs 1.0.2 (including) 1.0.2 (including)
Unbound Nlnetlabs 1.1.0 (including) 1.1.0 (including)
Unbound Nlnetlabs 1.1.1 (including) 1.1.1 (including)
Unbound Nlnetlabs 1.2.0 (including) 1.2.0 (including)
Unbound Nlnetlabs 1.2.1 (including) 1.2.1 (including)
Unbound Nlnetlabs 1.3.0 (including) 1.3.0 (including)
Unbound Nlnetlabs 1.3.1 (including) 1.3.1 (including)
Unbound Nlnetlabs 1.3.2 (including) 1.3.2 (including)
Unbound Nlnetlabs 1.3.3 (including) 1.3.3 (including)
Unbound Nlnetlabs 1.3.4 (including) 1.3.4 (including)
Unbound Nlnetlabs 1.4.0 (including) 1.4.0 (including)
Unbound Nlnetlabs 1.4.1 (including) 1.4.1 (including)
Unbound Nlnetlabs 1.4.2 (including) 1.4.2 (including)

References