ISC BIND 9 DNSSEC Validation CVE-2012-3817 Denial of Service Vulnerability
BID:54658
Info
ISC BIND 9 DNSSEC Validation CVE-2012-3817 Denial of Service Vulnerability
| Bugtraq ID: | 54658 |
| Class: | Unknown |
| CVE: |
CVE-2012-3817 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 24 2012 12:00AM |
| Updated: | Apr 13 2015 09:46PM |
| Credit: | Einar Lonn |
| Vulnerable: |
Xerox FreeFlow Print Server (FFPS) 93.E0.21C Xerox FreeFlow Print Server (FFPS) 91.D2.32 Xerox FreeFlow Print Server (FFPS) 82.D1.44 Xerox FreeFlow Print Server (FFPS) 81.D0.73 Xerox FreeFlow Print Server (FFPS) 73.D2.33 Xerox FreeFlow Print Server (FFPS) 73.C5.11 VMWare ESX Server 4.1 VMWare ESX Server 4.0 Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Ubuntu Ubuntu Linux 11.10 i386 Ubuntu Ubuntu Linux 11.10 amd64 Ubuntu Ubuntu Linux 11.04 powerpc Ubuntu Ubuntu Linux 11.04 i386 Ubuntu Ubuntu Linux 11.04 ARM Ubuntu Ubuntu Linux 11.04 amd64 Ubuntu Ubuntu Linux 10.04 sparc Ubuntu Ubuntu Linux 10.04 powerpc Ubuntu Ubuntu Linux 10.04 i386 Ubuntu Ubuntu Linux 10.04 ARM Ubuntu Ubuntu Linux 10.04 amd64 Sun Solaris 9 Sun Solaris 10 Oracle Solaris 11 Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 Oracle Enterprise Linux 5 NetBSD NetBSD 6 BETA 0 NetBSD NetBSD 5.0.3 NetBSD NetBSD 5.0.3 NetBSD NetBSD 5.0.2 NetBSD NetBSD 5.0.1 NetBSD NetBSD 4.0.2 NetBSD NetBSD 4.0.1 NetBSD NetBSD Current NetBSD NetBSD 5.1 NetBSD NetBSD 5.0 NetBSD NetBSD 4.1 NetBSD NetBSD 4.0 McAfee FireWall Enterprise 8.2.1 McAfee FireWall Enterprise 7.0.1.03 Mandriva Linux Mandrake 2011 x86_64 Mandriva Linux Mandrake 2011 MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 Juniper JUNOS 8.0 Juniper JUNOS 6.4 Juniper JUNOS 6.3 Juniper JUNOS 6.2 Juniper JUNOS 6.1 Juniper JUNOS 5.7 Juniper JUNOS 5.6 Juniper JUNOS 5.5 Juniper JUNOS 5.4 Juniper JUNOS 5.3 Juniper JUNOS 5.2 Juniper JUNOS 5.1 Juniper JUNOS 5.0 Juniper JUNOS 9.6 Juniper JUNOS 9.5 Juniper JUNOS 9.4 Juniper JUNOS 9.2 Juniper JUNOS 9.1 Juniper JUNOS 9.0 R1.1 Juniper JUNOS 9.0 Juniper JUNOS 8.5.R1 Juniper JUNOS 8.5 R1.14 Juniper JUNOS 8.4 Juniper JUNOS 8.3 Juniper JUNOS 8.2 Juniper JUNOS 8.1 Juniper JUNOS 7.3 Juniper JUNOS 6.0 Juniper JUNOS 4.4 Juniper JUNOS 4.3 Juniper JUNOS 4.2 Juniper JUNOS 4.1 Juniper JUNOS 11.4R6.6 Juniper JUNOS 11.4R5.5 Juniper JUNOS 11.4R3.7 Juniper JUNOS 11.2R1 Juniper JUNOS 11.1R4 Juniper JUNOS 11.1 Juniper JUNOS 10.4R6 Juniper JUNOS 10.4 Juniper JUNOS 10.3 Juniper JUNOS 10.2R3 Juniper JUNOS 10.2R2 Juniper JUNOS 10.2 Juniper JUNOS 10.1 Juniper JUNOS 10.0S18 Juniper JUNOS 10.0 ISC Bind 9.8 ISC Bind 9.7.4 ISC Bind 9.9.1-P1 ISC Bind 9.9.1 ISC Bind 9.9.0 ISC Bind 9.8.3-P1 ISC Bind 9.8.3 ISC Bind 9.8.1b1 ISC Bind 9.8.1-P1 ISC Bind 9.8.0-P4 ISC Bind 9.8.0-P3 ISC Bind 9.8.0-P2 ISC Bind 9.8.0-P1 ISC Bind 9.7.6-P1 ISC Bind 9.7.6 ISC Bind 9.7.4b1 ISC Bind 9.7.4-P1 ISC Bind 9.7.4 B1 ISC Bind 9.7.3-P3 ISC Bind 9.7.3-P2 ISC Bind 9.7.3-P1 ISC Bind 9.7.3 Rc1 ISC Bind 9.7.3 P1 ISC Bind 9.7.3 B1 ISC Bind 9.7.3 ISC Bind 9.7.2-P3 ISC Bind 9.7.2-P2 ISC Bind 9.7.2-P1 ISC Bind 9.7.2 Rc1 ISC Bind 9.7.2 P3 ISC Bind 9.7.2 P2 ISC Bind 9.7.2 P1 ISC BIND 9.7.1-P2 ISC Bind 9.7.1 P2 ISC BIND 9.7.1 P1 ISC BIND 9.7.1 ISC Bind 9.6-ESV-R7-P1 ISC Bind 9.6-ESV-R7 ISC Bind 9.6-ESV-R5b1 ISC Bind 9.6-ESV-R5-P1 ISC Bind 9.6-ESV-R4-P3 ISC Bind 9.6-ESV-R4-P1 ISC Bind 9.6-ESV-R4 ISC Bind 9.6-ESV-R3 ISC Bind 9.6 -ESV R2 ISC Bind 9.6 -ESV R1 HP HP-UX B.11.31 HP HP-UX B.11.23 HP HP-UX B.11.11 Gentoo Linux FreeBSD FreeBSD 9.0-STABLE FreeBSD FreeBSD 9.0 FreeBSD FreeBSD 8.3 FreeBSD FreeBSD 8.2 FreeBSD FreeBSD 8.1 FreeBSD FreeBSD 8.0-STABLE FreeBSD FreeBSD 7.4 FreeBSD FreeBSD 7.0-STABLE Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 Avaya Aura Session Manager 6.2.1 Avaya Aura Session Manager 6.1.5 Avaya Aura Session Manager 6.1.3 Avaya Aura Session Manager 6.1.2 Avaya Aura Session Manager 6.1.1 Avaya Aura Session Manager 6.0.1 Avaya Aura Session Manager 6.2.2 Avaya Aura Session Manager 6.2 Avaya Aura Session Manager 6.1 SP2 Avaya Aura Session Manager 6.1 Sp1 Avaya Aura Session Manager 6.1 Avaya Aura Session Manager 6.0 SP1 Avaya Aura Session Manager 6.0 Avaya Aura Session Manager 5.2.1 Avaya Aura Session Manager 5.2 SP2 Avaya Aura Session Manager 5.2 SP1 Avaya Aura Session Manager 5.2 Avaya Aura Session Manager 1.1.1 Avaya Aura Session Manager 1.1 Avaya Aura Session Manager 1.0 Apple Mac OS X Server 10.7.5 Apple Mac OS X 10.8.4 Apple Mac OS X 10.8.2 Apple Mac OS X 10.8.1 Apple Mac OS X 10.7.5 Apple Mac OS X 10.8.3 Apple Mac OS X 10.8 |
| Not Vulnerable: |
McAfee FireWall Enterprise 8.2.1P03 McAfee FireWall Enterprise 7.0.1.03H04 ISC Bind 9.9.1-P2 ISC Bind 9.8.3-P2 ISC Bind 9.7.6-P2 ISC Bind 9.6-ESV-R7-P2 Apple Mac OS X 10.8.5 |
Discussion
ISC BIND 9 DNSSEC Validation CVE-2012-3817 Denial of Service Vulnerability
ISC BIND is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to cause an assertion failure in the 'named' process, denying service to legitimate users. This issue may also be exploited to disclose certain memory information to clients.
The following versions are affected:
BIND 9.6-ESV-R1 through versions 9.6-ESV-R7-P1
BIND 9.7.1 through versions 9.7.6-P1
BIND 9.8.0 through versions 9.8.3-P1
BIND 9.9.0 through versions 9.9.1-P1
ISC BIND is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to cause an assertion failure in the 'named' process, denying service to legitimate users. This issue may also be exploited to disclose certain memory information to clients.
The following versions are affected:
BIND 9.6-ESV-R1 through versions 9.6-ESV-R7-P1
BIND 9.7.1 through versions 9.7.6-P1
BIND 9.8.0 through versions 9.8.3-P1
BIND 9.9.0 through versions 9.9.1-P1
Exploit / POC
ISC BIND 9 DNSSEC Validation CVE-2012-3817 Denial of Service Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
ISC BIND 9 DNSSEC Validation CVE-2012-3817 Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
MandrakeSoft Enterprise Server 5
Apple Mac OS X 10.8.4
Solution:
Updates are available. Please see the references for more information.
MandrakeSoft Enterprise Server 5
-
Mandriva bind-9.7.6-0.0.P2.0.1mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva bind-devel-9.7.6-0.0.P2.0.1mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva bind-doc-9.7.6-0.0.P2.0.1mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva bind-utils-9.7.6-0.0.P2.0.1mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/
Apple Mac OS X 10.8.4
-
Apple OSXUpd10.8.5.dmg
http://www.apple.com/support/downloads/
References
ISC BIND 9 DNSSEC Validation CVE-2012-3817 Denial of Service Vulnerability
References:
References:
- CVE-2012-3817 Denial of Service (DoS) vulnerability in Bind (Oracle)
- CVE-2012-3817: Heavy DNSSEC Validation Load Can Cause a 'Bad Cache' Assertion Fa (ISC)
- ISC BIND Homepage (ISC)
- FreeBSD Security Advisory FreeBSD-SA-12:05.bind (FreeBSD Security Advisories)
- 2013-04: Junos Routing, Switching, and Security: Security Advisories Released (Juniper Networks)
- About the security content of OS X Mountain Lion v10.8.5 and Security Update 201 (Apple)
- ASA-2012-429: bind security update (RHSA-2012-1123) (Avaya)
- HPSBUX02823 SSRT100976 rev.1 - HP-UX Running BIND, Remote Denial of Service (DoS (HP)
- McAfee Security Bulletin - McAfee Firewall Enterprise hotfixes fix CVE-2012-3817 (McAfee)
- named(8) DNSSEC validation Denial of Service (Einar Lonn of IIS.se)
- NetBSD Security Advisory 2012-004 (NetBSD)
- PSN-2013-04-918: 2013-04 Security Bulletin: Junos: DNSSEC validation Denial of S (Juniper Networks)
- VMSA-2012-0016 : VMware security updates for vSphere API and ESX Service Console (VMware)
- Xerox Security Bulletin XRX13-007 (Xerox)