CVE Vulnerabilities

CVE-2012-1033

Published: Feb 08, 2012 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
4.3 LOW
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V3
Ubuntu
LOW

The resolver in ISC BIND 9 through 9.8.1-P1 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a ghost domain names attack.

Affected Software

Name Vendor Start Version End Version
Bind Isc 9.0 (including) 9.0 (including)
Bind Isc 9.0.1 (including) 9.0.1 (including)
Bind Isc 9.1 (including) 9.1 (including)
Bind Isc 9.1.1 (including) 9.1.1 (including)
Bind Isc 9.1.2 (including) 9.1.2 (including)
Bind Isc 9.1.3 (including) 9.1.3 (including)
Bind Isc 9.2 (including) 9.2 (including)
Bind Isc 9.2.0 (including) 9.2.0 (including)
Bind Isc 9.2.1 (including) 9.2.1 (including)
Bind Isc 9.2.2 (including) 9.2.2 (including)
Bind Isc 9.2.2-p3 (including) 9.2.2-p3 (including)
Bind Isc 9.2.3 (including) 9.2.3 (including)
Bind Isc 9.2.4 (including) 9.2.4 (including)
Bind Isc 9.2.5 (including) 9.2.5 (including)
Bind Isc 9.2.6 (including) 9.2.6 (including)
Bind Isc 9.2.7 (including) 9.2.7 (including)
Bind Isc 9.3 (including) 9.3 (including)
Bind Isc 9.3.0 (including) 9.3.0 (including)
Bind Isc 9.3.1 (including) 9.3.1 (including)
Bind Isc 9.3.2 (including) 9.3.2 (including)
Bind Isc 9.3.3 (including) 9.3.3 (including)
Bind Isc 9.4 (including) 9.4 (including)
Bind Isc 9.4.0 (including) 9.4.0 (including)
Bind Isc 9.4.0-rc1 (including) 9.4.0-rc1 (including)
Bind Isc 9.4.1 (including) 9.4.1 (including)
Bind Isc 9.4.2 (including) 9.4.2 (including)
Bind Isc 9.4.3 (including) 9.4.3 (including)
Bind Isc 9.4.3-rc1 (including) 9.4.3-rc1 (including)
Bind Isc 9.5 (including) 9.5 (including)
Bind Isc 9.5.0 (including) 9.5.0 (including)
Bind Isc 9.5.0-rc1 (including) 9.5.0-rc1 (including)
Bind Isc 9.5.1 (including) 9.5.1 (including)
Bind Isc 9.5.1-rc1 (including) 9.5.1-rc1 (including)
Bind Isc 9.5.1-rc2 (including) 9.5.1-rc2 (including)
Bind Isc 9.6.0 (including) 9.6.0 (including)
Bind Isc 9.6.0-p1 (including) 9.6.0-p1 (including)
Bind Isc 9.6.0-rc1 (including) 9.6.0-rc1 (including)
Bind Isc 9.6.0-rc2 (including) 9.6.0-rc2 (including)
Bind Isc 9.7.0 (including) 9.7.0 (including)
Bind Isc 9.7.0-b1 (including) 9.7.0-b1 (including)
Bind Isc 9.7.0-p1 (including) 9.7.0-p1 (including)
Bind Isc 9.7.0-p2 (including) 9.7.0-p2 (including)
Bind Isc 9.7.0-rc1 (including) 9.7.0-rc1 (including)
Bind Isc 9.7.0-rc2 (including) 9.7.0-rc2 (including)
Bind Isc 9.7.1 (including) 9.7.1 (including)
Bind Isc 9.7.1-p1 (including) 9.7.1-p1 (including)
Bind Isc 9.7.1-p2 (including) 9.7.1-p2 (including)
Bind Isc 9.7.1-rc1 (including) 9.7.1-rc1 (including)
Bind Isc 9.7.2 (including) 9.7.2 (including)
Bind Isc 9.7.2-p1 (including) 9.7.2-p1 (including)
Bind Isc 9.7.2-p2 (including) 9.7.2-p2 (including)
Bind Isc 9.7.2-p3 (including) 9.7.2-p3 (including)
Bind Isc 9.7.2-rc1 (including) 9.7.2-rc1 (including)
Bind Isc 9.7.3 (including) 9.7.3 (including)
Bind Isc 9.7.3-b1 (including) 9.7.3-b1 (including)
Bind Isc 9.7.3-p1 (including) 9.7.3-p1 (including)
Bind Isc 9.7.3-rc1 (including) 9.7.3-rc1 (including)
Bind Isc 9.7.4 (including) 9.7.4 (including)
Bind Isc 9.7.4-b1 (including) 9.7.4-b1 (including)
Bind Isc 9.8.0 (including) 9.8.0 (including)
Bind Isc 9.8.0-a1 (including) 9.8.0-a1 (including)
Bind Isc 9.8.0-b1 (including) 9.8.0-b1 (including)
Bind Isc 9.8.0-p1 (including) 9.8.0-p1 (including)
Bind Isc 9.8.0-p2 (including) 9.8.0-p2 (including)
Bind Isc 9.8.0-p4 (including) 9.8.0-p4 (including)
Bind Isc 9.8.0-rc1 (including) 9.8.0-rc1 (including)
Bind Isc 9.8.1 (including) 9.8.1 (including)
Bind Isc 9.8.1-b1 (including) 9.8.1-b1 (including)
Bind Isc 9.8.1-b2 (including) 9.8.1-b2 (including)
Bind Isc 9.8.1-b3 (including) 9.8.1-b3 (including)
Bind Isc 9.8.1-p1 (including) 9.8.1-p1 (including)
Bind Isc 9.8.1-rc1 (including) 9.8.1-rc1 (including)
Red Hat Enterprise Linux 5 RedHat bind-30:9.3.6-20.P1.el5_8.1 *
Red Hat Enterprise Linux 5 RedHat bind97-32:9.7.0-10.P2.el5_8.1 *
Red Hat Enterprise Linux 6 RedHat bind-32:9.7.3-8.P3.el6_2.3 *
Bind9 Ubuntu devel *
Bind9 Ubuntu hardy *
Bind9 Ubuntu lucid *
Bind9 Ubuntu maverick *
Bind9 Ubuntu natty *
Bind9 Ubuntu oneiric *
Bind9 Ubuntu precise *
Bind9 Ubuntu upstream *

References