BIND Security Advisories

High TCP Query Load Can Trigger a Memory Leak in BIND 9

Summary: 
Under heavy incoming TCP query loads named experiences a memory leak which may lead to significant reductions in query response performance. Additionally, this can trigger an automatic shutdown if named is running on a system that kills out-of-memory processes.
CVE: 
CVE-2012-3868
Document Version: 
2.1
Posting date: 
24 Jul 2012
Program Impacted: 
BIND
Versions affected: 
9.9.0 through 9.9.1-P1
Severity: 
High
Exploitable: 
Remotely

Heavy DNSSEC Validation Load Can Cause a "Bad Cache" Assertion Failure in BIND9

Summary: 
High numbers of queries with DNSSEC validation enabled can cause an assertion failure in named, caused by using a "bad cache" data structure before it has been initialized.
CVE: 
CVE-2012-3817
Document Version: 
2.2
Posting date: 
24 Jul 2012
Program Impacted: 
BIND
Versions affected: 
9.6-ESV-R1--> 9.6-ESV-R7-P1; 9.7.1 --> 9.7.6-P1; 9.8.0 --> 9.8.3-P1; 9.9.0 --> 9.9.1-P1
Severity: 
Critical
Exploitable: 
Remotely

Handling of zero length rdata can cause named to terminate unexpectedly

Summary: 
Processing of DNS resource records where the rdata field is zero length may cause various issues for the servers handling them.
CVE: 
CVE-2012-1667
Document Version: 
1.4
Posting date: 
04 Jun 2012
Program Impacted: 
BIND
Versions affected: 
9.0.x -> 9.6.x, 9.4-ESV->9.4-ESV-R5-P1, 9.6-ESV->9.6-ESV-R7, 9.7.0->9.7.6, 9.8.0->9.8.3, 9.9.0->9.9.1
Severity: 
Critical
Exploitable: 
Remotely

Ghost Domain Names: Revoked Yet Still Resolvable

Summary: 
After completing our analysis of the DNS exploit reported by Professor Haixin Duan of Tsinghua University, ISC has determined that the behavior he describes, while verifiable, is due to design issues in the DNS protocol. No immediate steps are planned to address the issue. Further information concerning the implications of the reported vulnerability can be found in the complete problem description below.
CVE: 
CVE-2012-1033
Document Version: 
2.1
Posting date: 
07 Feb 2012
Program Impacted: 
BIND
Versions affected: 
All versions of BIND 9
Severity: 
High
Exploitable: 
remotely

BIND 9 Resolver crashes after logging an error in query.c

Summary: 
Organizations across the Internet reported crashes interrupting service on BIND 9 nameservers performing recursive queries. Affected servers crashed after logging an error in query.c with the following message: "INSIST(! dns_rdataset_isassociated(sigrdataset))" Multiple versions were reported being affected, including all currently supported release versions of ISC BIND 9. ISC is actively investigating the root cause and has produced patches which prevent the crash. Further information will be made available soon.
CVE: 
CVE-2011-4313
Document Version: 
2.0.1
Posting date: 
16 Nov 2011
Program Impacted: 
BIND
Versions affected: 
BIND 9.0.x -> 9.6.x , 9.4-ESV->9.4-ESV-R5, 9.6-ESV->9.6-ESV-R5, 9.7.0->9.7.4, 9.8.0->9.8.1, 9.9.0a1->9.9.0b1
Severity: 
Serious
Exploitable: 
Remotely
Share this