5
CVSSv2

CVE-2018-5740

Published: 16/01/2019 Updated: 12/04/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

"deny-answer-aliases" is a little-used feature intended to help recursive server operators protect end users against DNS rebinding attacks, a potential method of circumventing the security model used by client browsers. However, a defect in this feature makes it easy, when the feature is in use, to experience an assertion failure in name.c. Affects BIND 9.7.0->9.8.8, 9.9.0->9.9.13, 9.10.0->9.10.8, 9.11.0->9.11.4, 9.12.0->9.12.2, 9.13.0->9.13.2.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

isc bind

redhat enterprise linux server eus 7.5

redhat enterprise linux server eus 7.6

redhat enterprise linux workstation 6.0

redhat enterprise linux server 7.0

redhat enterprise linux server 6.0

redhat enterprise linux desktop 6.0

redhat enterprise linux desktop 7.0

redhat enterprise linux server aus 7.6

redhat enterprise linux workstation 7.0

debian debian linux 8.0

debian debian linux 9.0

netapp data ontap edge -

canonical ubuntu linux 12.04

canonical ubuntu linux 18.04

canonical ubuntu linux 14.04

canonical ubuntu linux 16.04

hp hp-ux -

opensuse leap 15.0

opensuse leap 15.1

opensuse leap 42.3

Vendor Advisories

Synopsis Important: bind security update Type/Severity Security Advisory: Important Topic An update for bind is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (CVSS) base score, whic ...
Synopsis Important: bind security update Type/Severity Security Advisory: Important Topic An update for bind is now available for Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (CVSS) base score, which ...
Debian Bug report logs - #905743 bind9: CVE-2018-5740: A flaw in the "deny-answer-aliases" feature can cause an INSIST assertion failure in named Package: src:bind9; Maintainer for src:bind9 is Debian DNS Team <team+dns@trackerdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 8 Aug 2018 2 ...
Bind could be made to crash if it received specially crafted network traffic ...
Bind could be made to crash if it received specially crafted network traffic ...
A denial of service flaw was discovered in bind versions that include the "deny-answer-aliases" feature This flaw may allow a remote attacker to trigger an INSIST assert in named leading to termination of the process and a denial of service condition(CVE-2018-5740) ...
A denial of service flaw was discovered in bind versions that include the "deny-answer-aliases" feature This flaw may allow a remote attacker to trigger an INSIST assert in named leading to termination of the process and a denial of service condition(CVE-2018-5740) ...
A denial of service flaw was discovered in bind versions that include the "deny-answer-aliases" feature This flaw may allow a remote attacker to trigger an INSIST assert in named leading to termination of the process and a denial of service condition ...

Github Repositories

CVE-2018-5740 PoC Named, which is received response from legimate authoritative server, is crashed by CVE-2018-5740 FILES namedconf: BIND configration file for authoritative server examplecom: zone file for authoritative server named-full-resolverconf: BIND configration file for victim full-resolver server REPRODUCE STEPS Install CentOS 75 Install bind and bind-utils