ISC BIND Negative Cache Poison Denial Of Service Vulnerability

BID:9114

Info

ISC BIND Negative Cache Poison Denial Of Service Vulnerability

Bugtraq ID: 9114
Class: Unknown
CVE: CVE-2003-0914
Remote: Yes
Local: No
Published: Nov 26 2003 12:00AM
Updated: Jul 12 2009 12:56AM
Credit: This vulnerability was announced in a vendor changelog.
Vulnerable: Sun Solaris 9_x86
Sun Solaris 9
Sun Solaris 8_x86
Sun Solaris 8_sparc
Sun Solaris 7.0_x86
Sun Solaris 7.0
Sun Linux 5.0
+ Sun LX50
Sun Cobalt RaQ XTR
Sun Cobalt RaQ 4
Sun Cobalt Qube 3
SCO Unixware 7.1.1
SCO OpenLinux Workstation 3.1.1
SCO OpenLinux Server 3.1.1
SCO Open Server 5.0.7
SCO Open Server 5.0.6
Nixu NameSurfer Suite 3.0.1
Nixu NameSurfer Standard Edition 3.0.1
NetBSD NetBSD 1.6.1
NetBSD NetBSD 1.6
NetBSD NetBSD Current
ISC BIND 8.4.1
ISC BIND 8.4
ISC BIND 8.3.6
ISC BIND 8.3.5
ISC BIND 8.3.4
+ Apple Mac OS X 10.2.4
+ Apple Mac OS X 10.2.3
+ Apple Mac OS X Server 10.2.4
+ Apple Mac OS X Server 10.2.3
+ S.u.S.E. Linux Personal 8.2
ISC BIND 8.3.3
+ Apple Mac OS X 10.2.2
+ Apple Mac OS X 10.2.1
+ Apple Mac OS X 10.2
+ Apple Mac OS X 10.1.5
+ Apple Mac OS X 10.1.4
+ Apple Mac OS X 10.1.3
+ Apple Mac OS X 10.1.2
+ Apple Mac OS X 10.1.1
+ Apple Mac OS X 10.1
+ Apple Mac OS X 10.1
+ Apple Mac OS X Server 10.2.2
+ Apple Mac OS X Server 10.2.1
+ Apple Mac OS X Server 10.2
+ Apple Mac OS X Server 10.0
+ Debian Linux 3.0
+ FreeBSD FreeBSD 4.7 -RELEASE
+ FreeBSD FreeBSD 4.7
+ MandrakeSoft Single Network Firewall 7.2
+ Mandriva Linux Mandrake 7.2
+ OpenPKG OpenPKG 1.1
+ OpenPKG OpenPKG Current
ISC BIND 8.3.2
+ FreeBSD FreeBSD 4.6 -RELEASE
+ FreeBSD FreeBSD 4.6
ISC BIND 8.3.1
ISC BIND 8.3 .0
ISC BIND 8.2.7
ISC BIND 8.2.6
+ OpenPKG OpenPKG 1.0
+ Trustix Secure Linux 1.5
+ Trustix Secure Linux 1.2
ISC BIND 8.2.5
+ OpenPKG OpenPKG 1.0
+ Trustix Secure Linux 1.5
ISC BIND 8.2.4
+ SuSE Linux 8.1
+ SuSE Linux 8.0
+ SuSE Linux 7.3 sparc
+ SuSE Linux 7.3 ppc
+ SuSE Linux 7.3
+ Trustix Secure Linux 1.2
ISC BIND 8.2.3
+ Caldera OpenLinux Server 3.1.1
+ Caldera OpenLinux Server 3.1
+ Caldera OpenLinux Workstation 3.1.1
+ Caldera OpenLinux Workstation 3.1
+ Debian Linux 2.2
+ EnGarde Secure Linux 1.0.1
+ Immunix Immunix OS 7+
IBM AIX 5.1 L
IBM AIX 4.3.3
IBM AIX 5.2
IBM AIX 5.1
HP Tru64 UNIX Compaq Secure Web Server 5.1 A
HP Tru64 UNIX Compaq Secure Web Server 5.1
HP Tru64 UNIX Compaq Secure Web Server 4.0 G
HP Tru64 UNIX Compaq Secure Web Server 4.0 F
HP Tru64 5.1 b
HP Tru64 5.1 a PK4 (BL21)
HP Tru64 5.1 PK6 (BL20)
HP HP-UX 11.11
HP HP-UX 11.0
FreeBSD FreeBSD 5.0
FreeBSD FreeBSD 4.9
FreeBSD FreeBSD 4.8
FreeBSD FreeBSD 4.7
FreeBSD FreeBSD 4.6.2
FreeBSD FreeBSD 4.6
FreeBSD FreeBSD 4.5
FreeBSD FreeBSD 4.4
Compaq Tru64 5.1 b PK2 (BL22)
Compaq Tru64 5.1 b PK1 (BL1)
Compaq Tru64 5.1 b
Compaq Tru64 5.1 a PK5 (BL23)
Compaq Tru64 5.1 a PK4 (BL21)
Compaq Tru64 5.1 a PK3 (BL3)
Compaq Tru64 5.1 a PK2 (BL2)
Compaq Tru64 5.1 a PK1 (BL1)
Compaq Tru64 5.1 a
Compaq Tru64 5.1 PK6 (BL20)
Compaq Tru64 5.1 PK5 (BL19)
Compaq Tru64 5.1 PK4 (BL18)
Compaq Tru64 5.1 PK3 (BL17)
Compaq Tru64 5.1
Compaq Tru64 4.0 g PK4 (BL22)
Compaq Tru64 4.0 g PK3 (BL17)
Compaq Tru64 4.0 g
Compaq Tru64 4.0 f PK8 (BL22)
Compaq Tru64 4.0 f PK7 (BL18)
Compaq Tru64 4.0 f PK6 (BL17)
Compaq Tru64 4.0 f
Compaq TCP/IP Services For OpenVMS 5.3
- Compaq OpenVMS 5.3
Compaq TCP/IP Services For OpenVMS 5.1
BorderWare Firewall Server 7.0
Not Vulnerable: ISC BIND 8.4.3
ISC BIND 8.4.2
ISC BIND 8.3.7

Discussion

ISC BIND Negative Cache Poison Denial Of Service Vulnerability

ISC BIND has been reported prone to a cache poisoning vulnerability. This issue may be exploited to trigger a denial of service affect in the vulnerable service. It has been reported that the denial of service affect will last until the bad DNS record expires from the cache.

Exploit / POC

ISC BIND Negative Cache Poison Denial Of Service Vulnerability

Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.

Solution / Fix

ISC BIND Negative Cache Poison Denial Of Service Vulnerability

Solution:
ISC BIND has released upgrades to address this issue.

Sun has released an updated alert (Sun Alert ID: 57434) that contains a workaround for Solaris 7,8 and 9 based systems. Fixes are also available.

Sun has made fixes available for Qube3 and RaQ4 systems.

IBM has released a revised advisory stating that APARS to address this issue for AIX 4.3.3, 5.1.0 and 5.2.0 are available. Customers are advised to apply these APARS as soon as possible. Further information regarding obtaining and applying appropriate APARS can be found in the referenced advisory.

Sun have released a security update to address this issue in the Sun RAQ XTR. Please see references section for further details. Fixes are linked below.

Hewlett-Packard has released an advisory (SSRT3653) and early release patches to address this issue in Tru64 based systems. Customers are advised to apply relative fixes as soon as possible. Further detail is available in the referenced advisory.

SCO has released an advisory (CSSA-2003-SCO.33) and fixes to address this issue. Customers are advised to apply relative fixes as soon as possible. Further detail is available in the referenced advisory, fixes are linked below.

Hewlett-Packard has released an advisory (HPSBUX0311-303) and fixes to address this issue in HP-UX 11.00 and 11.11. Customers are advised to apply relative fixes as soon as possible. Further detail is available in the referenced advisory, fixes are linked below. HP revised this bulletin to include a patch for HP-UX 11.11 to replace the preliminary depot that was available.

NetBSD have reported that fixes for this issue are pending, alternatively NetBSD have advised that users can use BIND 9 from pkgsrc to make their systems invulnerable to this issue.

Nixu have advised customers who are running a Nixu NameSurfer installation to upgrade their visible nameservers to BIND versions 9.2.1 or newer.

IBM have released an APAR to address this issue in IBM AIX 5.1L. Affected users are advised to download and apply fixes as soon as posible.

Engarde Linux has released an advisory (ESA-20031126-031) and fixes to address this issue. Guardian Digital Secure Network Users are advised to apply appropriate fixes as soon as possible. Further details regarding obtaining and applying these fixes can be found in the referenced advisory.

Trustix has released an advisory and fixes to address this issue.

Immunix has released an advisory and fixes to address this issue.

SuSE Linux has released an advisory (SuSE-SA:2003:047) and fixes to address this issue. Users are advised to apply appropriate fixes as soon as possible. Further details regarding obtaining and applying these fixes can be found in the referenced advisory.

FreeBSD has released a security advisory (FreeBSD-SA-03:19.bind) including patches to address this issue. Patches are available below.

NetBSD has released a security advisory 2003-018 including patches to address this issue. Please see the referenced advisory for more information.

IBM has released an advisory with fixes to address this issue in AIX 4.3.3, AIX 5.1.0 and AIX 5.2.0. Further information can be obtained by contacting the vendor. See referenced advisory for more details.

Debian has released an advisory (DSA 409-1) to address this issue. Please see the attached advisory for details on obtaining and applying fixes.

HP has released an advisory (SSRT3653) to address this issue in OpenVMS. Please see the attached advisory for details on obtaining and applying fixes. The following fixes have been released:

For VAX only TCP/IP V5.3:
TCPIP$BIND_SERVER.EXE_ECO_G_V_V53
For VAX only TCP/IP V5.1:
TCPIP$BIND_SERVER.EXE_ECO_I_V_V51
For Alpha only TCP/IP V5.1:
TCPIP$BIND_SERVER.EXE_ECO_I_A_V51

SCO has released advisory CSSA-2004-003.0 for OpenLinux.

BorderWare has released patches dealing with this issue for their Firewall Server product. Please contact the vendor for more information and details on obtaining the patch.

Hewlett-Packard has released advisory HPSBTU01066 along with a resolution dealing with this issue. Please see the referenced advisory for more information.

SCO has released advisory SCOSA-2005.4 to address this issue in OpenServer 5.0.6 and OpenServer 5.0.7. Please see the referenced advisory for more information.

Fixes:


Sun Cobalt RaQ 4

Sun Solaris 8_sparc

IBM AIX 5.1

IBM AIX 5.2

Sun Cobalt RaQ XTR

Sun Solaris 7.0

Sun Solaris 9

Sun Cobalt Qube 3

Sun Solaris 9_x86

Sun Solaris 7.0_x86

Sun Solaris 8_x86

HP HP-UX 11.0

HP HP-UX 11.11

SCO OpenLinux Server 3.1.1

SCO OpenLinux Workstation 3.1.1

IBM AIX 4.3.3

FreeBSD FreeBSD 4.4

FreeBSD FreeBSD 4.5

FreeBSD FreeBSD 4.6

FreeBSD FreeBSD 4.7

FreeBSD FreeBSD 4.8

FreeBSD FreeBSD 4.9

FreeBSD FreeBSD 5.0

Compaq TCP/IP Services For OpenVMS 5.1

IBM AIX 5.1 L

Compaq TCP/IP Services For OpenVMS 5.3

SCO Unixware 7.1.1

ISC BIND 8.2.3

ISC BIND 8.2.4

ISC BIND 8.2.6

ISC BIND 8.3 .0

ISC BIND 8.3.1

ISC BIND 8.3.2

ISC BIND 8.3.3

ISC BIND 8.3.4

ISC BIND 8.3.5

ISC BIND 8.3.6

ISC BIND 8.4

ISC BIND 8.4.1

References

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report