CVE Vulnerabilities

CVE-2022-2795

Published: Sep 21, 2022 | Modified: Nov 29, 2024
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CVSS 2.x
RedHat/V2
RedHat/V3
5.3 MODERATE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

By flooding the target resolver with queries exploiting this flaw an attacker can significantly impair the resolvers performance, effectively denying legitimate clients access to the DNS resolution service.

Affected Software

NameVendorStart VersionEnd Version
BindIsc9.0.0 (including)9.16.33 (excluding)
BindIsc9.18.0 (including)9.18.7 (excluding)
BindIsc9.19.0 (including)9.19.5 (excluding)
BindIsc9.9.3-s1 (including)9.9.3-s1 (including)
BindIsc9.9.12-s1 (including)9.9.12-s1 (including)
BindIsc9.9.13-s1 (including)9.9.13-s1 (including)
BindIsc9.10.5-s1 (including)9.10.5-s1 (including)
BindIsc9.10.7-s1 (including)9.10.7-s1 (including)
BindIsc9.11.3-s1 (including)9.11.3-s1 (including)
BindIsc9.11.5-s3 (including)9.11.5-s3 (including)
BindIsc9.11.5-s5 (including)9.11.5-s5 (including)
BindIsc9.11.5-s6 (including)9.11.5-s6 (including)
BindIsc9.11.6-s1 (including)9.11.6-s1 (including)
BindIsc9.11.7-s1 (including)9.11.7-s1 (including)
BindIsc9.11.8-s1 (including)9.11.8-s1 (including)
BindIsc9.11.12-s1 (including)9.11.12-s1 (including)
BindIsc9.11.14-s1 (including)9.11.14-s1 (including)
BindIsc9.11.19-s1 (including)9.11.19-s1 (including)
BindIsc9.11.21-s1 (including)9.11.21-s1 (including)
BindIsc9.11.27-s1 (including)9.11.27-s1 (including)
BindIsc9.11.29-s1 (including)9.11.29-s1 (including)
BindIsc9.11.35-s1 (including)9.11.35-s1 (including)
BindIsc9.11.37-s1 (including)9.11.37-s1 (including)
BindIsc9.16.8-s1 (including)9.16.8-s1 (including)
BindIsc9.16.11-s1 (including)9.16.11-s1 (including)
BindIsc9.16.13-s1 (including)9.16.13-s1 (including)
BindIsc9.16.21-s1 (including)9.16.21-s1 (including)
BindIsc9.16.32-s1 (including)9.16.32-s1 (including)
Red Hat Enterprise Linux 7RedHatbind-32:9.11.4-26.P2.el7_9.13*
Red Hat Enterprise Linux 8RedHatbind9.16-32:9.16.23-0.14.el8*
Red Hat Enterprise Linux 8RedHatbind-32:9.11.36-8.el8*
Red Hat Enterprise Linux 8RedHatbind-32:9.11.36-8.el8*
Red Hat Enterprise Linux 8.6 Extended Update SupportRedHatbind-32:9.11.36-3.el8_6.7*
Red Hat Enterprise Linux 8.6 Extended Update SupportRedHatdhcp-12:4.3.6-47.el8_6.2*
Red Hat Enterprise Linux 9RedHatbind-32:9.16.23-11.el9*
Bind9Ubuntubionic*
Bind9Ubuntudevel*
Bind9Ubuntuesm-infra-legacy/trusty*
Bind9Ubuntuesm-infra/bionic*
Bind9Ubuntuesm-infra/focal*
Bind9Ubuntuesm-infra/xenial*
Bind9Ubuntufocal*
Bind9Ubuntujammy*
Bind9Ubuntukinetic*
Bind9Ubuntulunar*
Bind9Ubuntumantic*
Bind9Ubuntunoble*
Bind9Ubuntuoracular*
Bind9Ubuntuplucky*
Bind9Ubuntuquesting*
Bind9Ubuntutrusty*
Bind9Ubuntutrusty/esm*
Bind9Ubuntuupstream*
Bind9Ubuntuxenial*
Bind9-libsUbuntufocal*
Isc-dhcpUbuntudevel*
Isc-dhcpUbuntuesm-apps/noble*
Isc-dhcpUbuntukinetic*
Isc-dhcpUbuntulunar*
Isc-dhcpUbuntumantic*
Isc-dhcpUbuntunoble*
Isc-dhcpUbuntuoracular*
Isc-dhcpUbuntuplucky*
Isc-dhcpUbuntuquesting*

References