Unbound before 1.4.4 does not send responses for signed zones after mishandling an unspecified query, which allows remote attackers to cause a denial of service (DNSSEC outage) via a crafted query.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:08
Type | Values Removed | Values Added |
---|---|---|
References | () http://packages.debian.org/changelogs/pool/main/u/unbound/unbound_1.4.6-1/changelog - | |
References | () http://unbound.nlnetlabs.nl/downloads/unbound-1.4.4.tar.gz - Patch | |
References | () http://www.debian.org/security/2011/dsa-2243 - |
Information
Published : 2011-06-02 20:55
Updated : 2024-11-21 01:08
NVD link : CVE-2009-4008
Mitre link : CVE-2009-4008
CVE.ORG link : CVE-2009-4008
JSON object : View
Products Affected
nlnetlabs
- unbound
CWE
CWE-399
Resource Management Errors