CVE-2010-0382

Severity

76%

Complexity

49%

Confidentiality

165%

ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta handles out-of-bailiwick data accompanying a secure response without re-fetching from the original source, which allows remote attackers to have an unspecified impact via a crafted response, aka Bug 20819. NOTE: this vulnerability exists because of a regression during the fix for CVE-2009-4022.

ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta handles out-of-bailiwick data accompanying a secure response without re-fetching from the original source, which allows remote attackers to have an unspecified impact via a crafted response, aka Bug 20819. NOTE: this vulnerability exists because of a regression during the fix for CVE-2009-4022.

CVSS 2.0 Base Score 7.6. CVSS Attack Vector: network. CVSS Attack Complexity: high. CVSS Vector: (AV:N/AC:H/Au:N/C:C/I:C/A:C).

Overview

Type

ISC

First reported 15 years ago

2010-01-22 22:00:00

Last updated 7 years ago

2017-09-19 01:30:00

Affected Software

ISC BIND 9.0

9.0

ISC BIND 9.0.0 Release Candidate 1

9.0.0

ISC BIND 9.0.0 Release Candidate 2

9.0.0

ISC BIND 9.0.0 Release Candidate 3

9.0.0

ISC BIND 9.0.0 Release Candidate 4

9.0.0

ISC BIND 9.0.0 Release Candidate 5

9.0.0

ISC BIND 9.0.0 Release Candidate 6

9.0.0

ISC BIND 9.0.1

9.0.1

ISC BIND 9.0.1 Release Candidate 1

9.0.1

ISC BIND 9.0.1 Release Candidate 2

9.0.1

ISC BIND 9.1

9.1

ISC BIND 9.1.0 Release Candidate 1

9.1.0

ISC BIND 9.1.1

9.1.1

ISC BIND 9.1.1 Release Candidate 1

9.1.1

ISC BIND 9.1.1 Release Candidate 2

9.1.1

ISC BIND 9.1.1 Release Candidate 3

9.1.1

ISC BIND 9.1.1 Release Candidate 4

9.1.1

ISC BIND 9.1.1 Release Candidate 5

9.1.1

ISC BIND 9.1.1 Release Candidate 6

9.1.1

ISC BIND 9.1.1 Release Candidate 7

9.1.1

ISC BIND 9.1.2

9.1.2

ISC BIND 9.1.2 Release Candidate 1

9.1.2

ISC BIND 9.1.3

9.1.3

ISC BIND 9.1.3 Release Candidate 1

9.1.3

ISC BIND 9.1.3 Release Candidate 2

9.1.3

ISC BIND 9.1.3 Release Candidate 3

9.1.3

ISC BIND 9.2

9.2

ISC BIND 9.2.0

9.2.0

ISC BIND 9.2.0 Alpha 1

9.2.0

ISC BIND 9.2.0 Alpha 2

9.2.0

ISC BIND 9.2.0 Alpha 3

9.2.0

ISC BIND 9.2.0 Beta 1

9.2.0

ISC BIND 9.2.0 Beta 2

9.2.0

ISC BIND 9.2.0 Release Candidate 1

9.2.0

ISC BIND 9.2.0 Release Candidate 10

9.2.0

ISC BIND 9.2.0 Release Candidate 2

9.2.0

ISC BIND 9.2.0 Release Candidate 3

9.2.0

ISC BIND 9.2.0 Release Candidate 4

9.2.0

ISC BIND 9.2.0 Release Candidate 5

9.2.0

ISC BIND 9.2.0 Release Candidate 6

9.2.0

ISC BIND 9.2.0 Release Candidate 7

9.2.0

ISC BIND 9.2.0 Release Candidate 8

9.2.0

ISC BIND 9.2.0 Release Candidate 9

9.2.0

ISC BIND 9.2.1

9.2.1

ISC BIND 9.2.1 Release Candidate 1

9.2.1

ISC BIND 9.2.1 Release Candidate 2

9.2.1

ISC BIND 9.2.2

9.2.2

ISC BIND 9.2.2 Patch 2

9.2.2

ISC BIND 9.2.2 P3

9.2.2

ISC BIND 9.2.2 Release Candidate 1

9.2.2

ISC BIND 9.2.3

9.2.3

ISC BIND 9.2.3 Release Candidate 1

9.2.3

ISC BIND 9.2.3 Release Candidate 2

9.2.3

ISC BIND 9.2.3 Release Candidate 3

9.2.3

ISC BIND 9.2.3 Release Candidate 4

9.2.3

ISC BIND 9.2.4

9.2.4

ISC BIND 9.2.4 Release Candidate 2

9.2.4

ISC BIND 9.2.4 Release Candidate 3

9.2.4

ISC BIND 9.2.4 Release Candidate 4

9.2.4

ISC BIND 9.2.4 Release Candidate 5

9.2.4

ISC BIND 9.2.4 Release Candidate 6

9.2.4

ISC BIND 9.2.4 Release Candidate 7

9.2.4

ISC BIND 9.2.4 Release Candidate 8

9.2.4

ISC BIND 9.2.5

9.2.5

ISC BIND 9.2.5 Beta 2

9.2.5

ISC BIND 9.2.5 Release Candidate 1

9.2.5

ISC BIND 9.2.6

9.2.6

ISC BIND 9.2.6 Release Candidate 1

9.2.6

ISC BIND 9.2.7

9.2.7

ISC BIND 9.2.7 Release Candidate 1

9.2.7

ISC BIND 9.2.7 Release Candidate 2

9.2.7

ISC BIND 9.2.7 Release Candidate 3

9.2.7

ISC BIND 9.2.8

9.2.8

ISC BIND 9.2.9

9.2.9

ISC BIND 9.2.9 Release Candidate 1

9.2.9

ISC BIND 9.3

9.3

ISC BIND 9.3.0

9.3.0

ISC BIND 9.3.0 Beta 2

9.3.0

ISC BIND 9.3.0 Beta 3

9.3.0

ISC BIND 9.3.0 Beta 4

9.3.0

ISC BIND 9.3.0 Release Candidate 1

9.3.0

ISC BIND 9.3.0 Release Candidate 2

9.3.0

ISC BIND 9.3.0 Release Candidate 3

9.3.0

ISC BIND 9.3.0 Release Candidate 4

9.3.0

ISC BIND 9.3.1

9.3.1

ISC BIND 9.3.1 Beta 2

9.3.1

ISC BIND 9.3.1 Release Candidate 1

9.3.1

ISC BIND 9.3.2

9.3.2

ISC BIND 9.3.2 Release Candidate 1

9.3.2

ISC BIND 9.3.3

9.3.3

ISC BIND 9.3.3 Release Candidate 1

9.3.3

ISC BIND 9.3.3 Release Candidate 2

9.3.3

ISC BIND 9.3.3 Release Candidate 3

9.3.3

ISC BIND 9.3.4

9.3.4

ISC BIND 9.3.5

9.3.5

ISC BIND 9.3.5 Release Candidate 1

9.3.5

ISC BIND 9.3.5 Release Candidate 2

9.3.5

ISC BIND 9.3.6

9.3.6

ISC BIND 9.3.6 Release Candidate 1

9.3.6

ISC BIND 9.4

9.4

ISC BIND 9.4.0

9.4.0

ISC BIND 9.4.0 Alpha 1

9.4.0

ISC BIND 9.4.0 Alpha 2

9.4.0

ISC BIND 9.4.0 Alpha 3

9.4.0

ISC BIND 9.4.0 Alpha 4

9.4.0

ISC BIND 9.4.0 Alpha 5

9.4.0

ISC BIND 9.4.0 Alpha 6

9.4.0

ISC BIND 9.4.0 Beta 1

9.4.0

ISC BIND 9.4.0 Beta 2

9.4.0

ISC BIND 9.4.0 Beta 3

9.4.0

ISC BIND 9.4.0 Beta 4

9.4.0

ISC BIND 9.4.0rc1

9.4.0

ISC BIND 9.4.0 Release Candidate 2

9.4.0

ISC BIND 9.4.1

9.4.1

ISC BIND 9.4.2

9.4.2

ISC BIND 9.4.2 Release Candidate 1

9.4.2

ISC BIND 9.4.2 Release Candidate 2

9.4.2

ISC BIND 9.4.3

9.4.3

ISC BIND 9.4.3 Beta 1

9.4.3

ISC BIND 9.4.3 Beta 2

9.4.3

ISC BIND 9.4.3 Beta 3

9.4.3

ISC BIND 9.4.3 Patch 1

9.4.3

ISC BIND 9.4.3 Patch 2

9.4.3

ISC BIND 9.4.3 Patch 3

9.4.3

ISC BIND 9.4.3 Patch 4

9.4.3

ISC BIND 9.4.3 Patch 5

9.4.3

ISC BIND 9.4.3 rc1

9.4.3

ISC BIND 9.6.0

9.6.0

ISC BIND 9.6.0 Alpha 1

9.6.0

ISC BIND 9.6.0 Beta 1

9.6.0

ISC BIND 9.6.0 p1

9.6.0

ISC BIND 9.6.0 rc1

9.6.0

ISC BIND 9.6.0 rc2

9.6.0

ISC BIND 9.6.1

9.6.1

ISC BIND 9.6.1 Beta 1

9.6.1

ISC BIND 9.6.1 P1

9.6.1

ISC BIND 9.6.1 P2

9.6.1

ISC BIND 9.6.1 Release Candidate 1

9.6.1

ISC BIND 9.7.0 Beta 1

9.7.0

ISC BIND 9.10.0

9.10.0

ISC BIND 9.10.0 Alpha 1

9.10.0

ISC BIND 9.10.0 Alpha 2

9.10.0

ISC BIND 9.10.0 Beta 1

9.10.0

ISC BIND 9.10.0 Beta 2

9.10.0

ISC BIND 9.10.0 Patch 1

9.10.0

ISC BIND 9.10.0 Patch 2

9.10.0

ISC BIND 9.10.0 Release Candidate 1

9.10.0

ISC BIND 9.10.0 Release Candidate 2

9.10.0

ISC BIND 9.10.1

9.10.1

ISC BIND 9.10.1 Beta 1

9.10.1

ISC BIND 9.10.1 Beta 2

9.10.1

ISC BIND 9.10.1 p1

9.10.1

ISC BIND 9.10.1 Patch 2

9.10.1

ISC BIND 9.10.1 Release Candidate 1

9.10.1

ISC BIND 9.10.1 Release Candidate 2

9.10.1

ISC BIND 9.10.2 b2

9.10.2

ISC BIND 9.10.2 P1

9.10.2

ISC BIND 9.10.2 Patch 2

9.10.2

ISC BIND 9.10.2 P3

9.10.2

ISC BIND 9.10.2 P4

9.10.2

ISC BIND 9.10.2 Release Candidate 1

9.10.2

ISC BIND 9.10.2 Release Candidate 2

9.10.2

ISC BIND 9.10.3

9.10.3

ISC BIND 9.10.3 Beta 1

9.10.3

ISC Bind 9.10.3 Patch 1

9.10.3

ISC Bind 9.10.3 Patch 2

9.10.3

ISC BIND 9.10.3 Patch 3

9.10.3

ISC BIND 9.10.3 Release Candidate 1

9.10.3

Stay updated

ExploitPedia is constantly evolving. Sign up to receive a notification when we release additional functionality.

Get in touch

If you'd like to report a bug or have any suggestions for improvements then please do get in touch with us using this form. We will get back to you as soon as we can.