NA

CVE-2023-5680

Published: 13/02/2024 Updated: 03/05/2024
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

If a resolver cache has a very large number of ECS records stored for the same name, the process of cleaning the cache database node for this name can significantly impair query performance. This issue affects BIND 9 versions 9.11.3-S1 up to and including 9.11.37-S1, 9.16.8-S1 up to and including 9.16.45-S1, and 9.18.11-S1 up to and including 9.18.21-S1.

Vulnerability Trend

Vendor Advisories

Description<!---->A flaw was found in the bind9 package This issue may allow an attacker to substantially decrease `named` performance by sending a specific set of queries, forcing the same name to have a large number of ECS records stored In the worst case scenario, `named` can become unresponsive, leading to a Denial of ServiceA flaw was found ...