CVE-2021-25218
Summary
| CVE | CVE-2021-25218 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-08-18 19:15:00 UTC |
| Updated | 2023-11-07 03:31:00 UTC |
| Description | In BIND 9.16.19, 9.17.16. Also, version 9.16.19-S1 of BIND Supported Preview Edition When a vulnerable version of named receives a query under the circumstances described above, the named process will terminate due to a failed assertion check. The vulnerability affects only BIND 9 releases 9.16.19, 9.17.16, and release 9.16.19-S1 of the BIND Supported Preview Edition. |
Risk And Classification
Problem Types: CWE-617
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| CVE-2021-25218: A too-strict assertion check could be triggered when responses in BIND 9.16.19 and 9.17.16 require UDP fragmentation if RRL is in use - Security Advisories | CONFIRM | kb.isc.org | |
| oss-security - August BIND maintenance releases contain a defect affecting servers using the map zone file format (was: A vulnerability in BIND (CVE-2021-25218) will be announced 18 August 2021) | MLIST | www.openwall.com | |
| [SECURITY] Fedora 34 Update: bind-dyndb-ldap-11.9-4.fc34 - package-announce - Fedora Mailing-Lists | FEDORA | lists.fedoraproject.org | |
| CVE-2021-25218 ISC BIND Vulnerability in NetApp Products | NetApp Product Security | CONFIRM | security.netapp.com | |
| oss-security - ISC has disclosed a vulnerability in BIND (CVE-2021-25218) | MLIST | www.openwall.com | |
| [SECURITY] Fedora 34 Update: bind-dyndb-ldap-11.9-4.fc34 - package-announce - Fedora Mailing-Lists | lists.fedoraproject.org | ||
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.