Bug 2216228 (CVE-2023-2911)
| Summary: | CVE-2023-2911 bind: Exceeding the recursive-clients quota may cause named to terminate unexpectedly when stale-answer-client-timeout is set to 0 | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | TEJ RATHI <trathi> |
| Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> |
| Status: | CLOSED WONTFIX | QA Contact: | |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | unspecified | CC: | askrabec, jburrell, mosvald, pemensik, security-response-team |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| URL: | https://kb.isc.org/docs/cve-2023-2911 | ||
| Whiteboard: | |||
| Fixed In Version: | bind 9.16.42, bind 9.18.16 | Doc Type: | If docs needed, set a value |
| Doc Text: |
A vulnerability was found in BIND. This security flaw occurs when the recursive-clients quota is reached on a BIND 9 resolver configured with stale-answer-enable yes; and stale-answer-client-timeout 0;. A sequence of serve-stale-related lookups could cause named to loop and terminate unexpectedly due to a stack overflow.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | 2023-06-28 17:40:03 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2216233, 2216234, 2216235, 2216237, 2216238, 2216239, 2216240, 2216241, 2216630, 2216631 | ||
| Bug Blocks: | 2216252 | ||
|
Description
TEJ RATHI
2023-06-20 14:34:22 UTC
Upstream article: https://kb.isc.org/docs/cve-2023-2911 *** Bug 2216576 has been marked as a duplicate of this bug. *** Created bind tracking bugs for this issue: Affects: fedora-all [bug 2216630] Created dhcp tracking bugs for this issue: Affects: fedora-all [bug 2216631] Default value used unless specified in configuration is stale-answer-client-timeout off; Unless stale-answer-client-timeout 0; and stale-answer-enable on; is present somewhere in the configuration, the fix should not be needed. Recommended value is around 1800 (miliseconds). This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2023-2911 |