CVE-2023-5680

Name
CVE-2023-5680
Description
If a resolver cache has a very large number of ECS records stored for the same name, the process of cleaning the cache database node for this name can significantly impair query performance. This issue affects BIND 9 versions 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.45-S1, and 9.18.11-S1 through 9.18.21-S1.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
vendor-advisory https://kb.isc.org/docs/cve-2023-5680
security-officer@isc.org https://security.netapp.com/advisory/ntap-20240503-0005/

Match rules

CPE URI Source package Min version Max version
bind-9 >= 9.11.3-S1 <= 9.11.37-S1
bind-9 >= 9.16.8-S1 <= 9.16.45-S1
bind-9 >= 9.18.11-S1 <= 9.18.21-S1

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
bind edge-main 9.18.24-r0 Mike Crute <mike@crute.us> fixed
bind 3.22-main 9.18.24-r0 None fixed
bind 3.21-main 9.18.24-r0 None fixed
bind 3.20-main 9.18.24-r0 None fixed
bind 3.19-main 9.18.24-r0 None fixed
bind 3.18-main 9.18.24-r0 Mike Crute <mike@crute.us> fixed
bind 3.17-main 9.18.24-r0 None fixed