CVE-2022-3080

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/09/2022
Last modified:
03/07/2024

Description

By sending specific queries to the resolver, an attacker can cause named to crash.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:* 9.16.14 (including) 9.16.33 (excluding)
cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:* 9.18.0 (including) 9.18.7 (excluding)
cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:* 9.19.0 (including) 9.19.5 (excluding)
cpe:2.3:a:isc:bind:9.16.14:s1:*:*:supported_preview:*:*:*
cpe:2.3:a:isc:bind:9.16.21:s1:*:*:supported_preview:*:*:*
cpe:2.3:a:isc:bind:9.16.32:s1:*:*:supported_preview:*:*:*
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*