Wind River Support Network

HomeDefectsLIN1021-7236
Fixed

LIN1021-7236 : Security Advisory - bind - CVE-2023-5517

Created: Feb 18, 2024    Updated: Mar 10, 2024
Resolved Date: Mar 10, 2024
Found In Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

A flaw in query-handling code can cause `named` to exit prematurely with an assertion failure when:

  - `nxdomain-redirect <domain>;` is configured, and
  - the resolver receives a PTR query for an RFC 1918 address that would normally result in an authoritative NXDOMAIN response.
This issue affects BIND 9 versions 9.12.0 through 9.16.45, 9.18.0 through 9.18.21, 9.19.0 through 9.19.19, 9.16.8-S1 through 9.16.45-S1, and 9.18.11-S1 through 9.18.21-S1.

CREATE(Triage):(User=admin) CVE-2023-5517 (https://nvd.nist.gov/vuln/detail/CVE-2023-5517)

CVEs


Live chat
Online