ISC BIND 9 Default ACL Settings Recursive Queries And Cached Content Security Bypass Vulnerability
BID:25076
Info
ISC BIND 9 Default ACL Settings Recursive Queries And Cached Content Security Bypass Vulnerability
| Bugtraq ID: | 25076 |
| Class: | Configuration Error |
| CVE: |
CVE-2007-2925 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 26 2007 12:00AM |
| Updated: | Aug 18 2007 07:33PM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
OpenPKG OpenPKG Current Nortel Networks ENSM IP Address Manager 0 Nortel Networks BCM 400 Nortel Networks BCM 200 Mandriva Linux Mandrake 2007.1 x86_64 Mandriva Linux Mandrake 2007.1 Mandriva Linux Mandrake 2007.0 x86_64 Mandriva Linux Mandrake 2007.0 MandrakeSoft Multi Network Firewall 2.0 MandrakeSoft Corporate Server 4.0 x86_64 MandrakeSoft Corporate Server 3.0 x86_64 MandrakeSoft Corporate Server 3.0 MandrakeSoft Corporate Server 4.0 ISC BIND 9.5 a2 ISC BIND 9.5 a1 ISC BIND 9.4.1 ISC BIND 9.4 rc2 ISC BIND 9.4 rc1 ISC BIND 9.4 b4 ISC BIND 9.4 b3 ISC BIND 9.4 b2 ISC BIND 9.4 b1 ISC BIND 9.4 a6 ISC BIND 9.4 a5 ISC BIND 9.4 a4 ISC BIND 9.4 a3 ISC BIND 9.4 a2 ISC BIND 9.4 a1 ISC BIND 9.4 ISC BIND 9.5.0a4 ISC BIND 9.5.0a3 Gentoo Linux |
| Not Vulnerable: |
ISC BIND 9.4.1 -P1 |
Discussion
ISC BIND 9 Default ACL Settings Recursive Queries And Cached Content Security Bypass Vulnerability
ISC's BIND 9 is prone to a security-bypass vulnerability.
An attacker can exploit this issue to query cached content from a DNS server or make recursive queries to a DNS server, thus obtaining sensitive information.
Versions up to BIND 9.4.1 are vulnerable to this issue.
ISC's BIND 9 is prone to a security-bypass vulnerability.
An attacker can exploit this issue to query cached content from a DNS server or make recursive queries to a DNS server, thus obtaining sensitive information.
Versions up to BIND 9.4.1 are vulnerable to this issue.
Exploit / POC
ISC BIND 9 Default ACL Settings Recursive Queries And Cached Content Security Bypass Vulnerability
Specific exploit code is not required to exploit this issue. The attacker simply needs to construct and submit a DNS query.
Specific exploit code is not required to exploit this issue. The attacker simply needs to construct and submit a DNS query.
Solution / Fix
ISC BIND 9 Default ACL Settings Recursive Queries And Cached Content Security Bypass Vulnerability
Solution:
The vendor has released BIND 9.4.1-P1 to address this issue. Please see the references for more information.
ISC BIND 9.4 a5
ISC BIND 9.4 b4
ISC BIND 9.4 rc2
ISC BIND 9.4 a4
ISC BIND 9.4 rc1
ISC BIND 9.4 a6
ISC BIND 9.4 b2
ISC BIND 9.4 b3
ISC BIND 9.4 a3
ISC BIND 9.4
ISC BIND 9.4 b1
ISC BIND 9.4 a1
ISC BIND 9.4 a2
ISC BIND 9.4.1
Solution:
The vendor has released BIND 9.4.1-P1 to address this issue. Please see the references for more information.
ISC BIND 9.4 a5
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4 b4
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4 rc2
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4 a4
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4 rc1
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4 a6
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4 b2
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4 b3
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4 a3
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4 b1
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4 a1
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4 a2
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
ISC BIND 9.4.1
-
ISC bind-9.4.1-P1.tar.gz
http://www.isc.org/sw/dl?pkg=bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz&name= BIND%209.4.1-P1%20Source
References
ISC BIND 9 Default ACL Settings Recursive Queries And Cached Content Security Bypass Vulnerability
References:
References:
- BIND 9.4.1-P1 (ISC)
- ISC BIND Homepage (ISC)
- Nortel Response to ISC:DNS:BIND 9 Vulnerabilities in Default ACL and Weak (Nortel Networks)
- BIND Vulnerabilities (ISC)
- Vulnerability Note VU#187297 ISC BIND insecure default access control lists (US-CERT)