QID 15132
Date Published: 2022-06-01
QID 15132: ISC BIND Assertion Failure Vulnerability
ISC BIND (Berkley Internet Domain Name) is an implementation of DNS protocols.
Affected versions:
BIND from 9.18.0 prior to 9.18.3
BIND 9.19.0
Patched Versions:
BIND 9.18.3
QID Detection Logic:
This unauthenticated check detects vulnerable systems by fetching the version information from the BIND service.
Successful exploit may occur if a TLS connection to a configured http TLS listener with a defined endpoint is destroyed too early.
Solution
Customers are advised to upgrade to the patched version latest release of ISC BIND.
Vendor References
- BIND CVE-2022-1183 -
kb.isc.org/v1/docs/cve-2022-1183
CVEs related to QID 15132
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cve-2022-1183 |
|