CVE-2017-3136

Source
https://cve.org/CVERecord?id=CVE-2017-3136
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-3136.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2017-3136
Downstream
Related
Published
2019-01-16T20:29:00.313Z
Modified
2026-02-12T08:18:17.698038Z
Severity
  • 5.9 (Medium) CVSS_V3 - CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

A query with a specific set of characteristics could cause a server using DNS64 to encounter an assertion failure and terminate. An attacker could deliberately construct a query, enabling denial-of-service against a server if it was configured to use the DNS64 feature and other preconditions were met. Affects BIND 9.8.0 -> 9.8.8-P1, 9.9.0 -> 9.9.9-P6, 9.9.10b1->9.9.10rc1, 9.10.0 -> 9.10.4-P6, 9.10.5b1->9.10.5rc1, 9.11.0 -> 9.11.0-P3, 9.11.1b1->9.11.1rc1, 9.9.3-S1 -> 9.9.9-S8.

References

Affected packages

Git / github.com/isc-projects/bind9

Affected versions

Other
alessio/regression/026024a6ae
alessio/regression/227add4c3e
alessio/regression/2ebcafd8c2
alessio/regression/a26055f03e
ondrej/008bfb6249a5f81d9e02ad4d39fda63fab57a0ad
ondrej/00ce93a69cd809810b82dbb229abf59d8e5850cc
ondrej/067f87f158b633e18a9c6fd0b038d1dc288bcb74
ondrej/074c7cc12c0eda40441926a8a96631c3176824a9
ondrej/07bc236b427ef64a431a7e4598cdfcca045bb737
ondrej/1a1413ff5910ace7919bb8db0a1bb1f6e9c9ff7d
ondrej/1db5c6a0d3035e318ca3822f86937f9e72c422a5
ondrej/2438db2eae8baf084615aff3b210ea51cd2f1fe1
ondrej/24ac7a7cd22d45e1bc1e26ba105105e16f627687
ondrej/4098157e6ce98910ff99c58c41c6cf8069b79cc7
ondrej/4281aaab4503116fcf50caa348e1b5e7d414b742
ondrej/42e70b0f0e2b32739eae4c22dfbc51c8ff578378
ondrej/42e84e4b97be23f2b3754844e9d4478f48e92b48
ondrej/46caf5f4a4522d42480aee4d5949ea9546f98c2f
ondrej/4d292fc37ff5e99462756352c6028af7d0becf74
ondrej/4f369af51ede0e5ac7b3a14c451c5a41350a61cc
ondrej/520ad2d2068624e13e71545feb9321a1fb2a3cb5
ondrej/53738634c3b511bd78e6626df95ae140631b080c
ondrej/54b24fb015165bcff74deec43bb7e784a31dd946
ondrej/6d06e7e7e585e30b419e4e20815cb8233c48f7b1
ondrej/6d1fdb850516a8d1fbfa853c56a1ef7627d54a72
ondrej/761b47a64845cb647d4fa3362be538eb0e7174d9
ondrej/840e56a979c3719ded668d5aaa04b1bddce465ef
ondrej/9cd2880a82f627bc44ab65fdaa19c2bcd9e61c96
ondrej/a42afbce2e34a5f990517fee7eab013c4adb8c0a
ondrej/a5f554959ec531712f6e14a8cb8c90d87cc27932
ondrej/b177581bb230d89821d1e2e5e91f93bee3fc4192
ondrej/b277a6f1f0a12f823d0db63e7b8d9b01bbbfe2ea
ondrej/b6298b394e9eaefcfa2458cd56c345d778e99b8e
ondrej/be1e6499742e241d71c7e79434e278a0c89d141b
ondrej/c5f1cb8a04eb947dc16ee227fa046667ae606c18
ondrej/c63b7fad498dbe56710b655bd296a58abba64bb8
ondrej/d7e5f7903de06e504aac4a3822a41d69e159e370
ondrej/e00b13ac6e5a49434fbe534b0cab86b9ee4fbdb5
ondrej/f8a0c0bed6ed629e314d22619510939c61d88b0e
ondrej/fb07c38697c9f4f76dcb921487c4f96813c99b69
stable
v9.*
v9.10.0a1
v9.10.0a2
v9.10.0b1
v9.10.0b2
v9.10.0rc1
v9.10.0rc2
v9.10.1
v9.10.1b1
v9.10.1b2
v9.10.1rc1
v9.10.1rc2
v9.10.2
v9.10.2b1
v9.10.2rc1
v9.10.2rc2
v9.10.3
v9.10.3b1
v9.10.3rc1
v9.10.4
v9.10.4b1
v9.10.4b2
v9.10.4b3
v9.10.4rc1
v9.10.5
v9.10.5b1
v9.10.5rc1
v9.10.5rc2
v9.10.5rc3
v9.10.6b1
v9.10.6rc1
v9.10.7
v9.10.7b1
v9.10.7rc1
v9.10.8
v9.10.8rc2
v9.11.0
v9.11.0a1
v9.11.0a2
v9.11.0a3
v9.11.0b1
v9.11.0b2
v9.11.0b3
v9.11.0rc1
v9.11.0rc2
v9.11.0rc3
v9.11.1
v9.11.11
v9.11.12
v9.11.13
v9.11.14
v9.11.16
v9.11.1b1
v9.11.1rc1
v9.11.1rc2
v9.11.1rc3
v9.11.22
v9.11.29
v9.11.2b1
v9.11.2rc1
v9.11.3
v9.11.35
v9.11.37
v9.11.3b1
v9.11.3rc1
v9.11.4
v9.11.4rc2
v9.11.6
v9.11.6rc1
v9.11.7
v9.11.9
v9.12.0a1
v9.12.0b1
v9.12.0b2
v9.12.0rc1
v9.12.1
v9.12.1b1
v9.12.1rc1
v9.12.2
v9.12.2rc2
v9.12.4
v9.12.4rc1
v9.13.0
v9.13.2
v9.13.3
v9.13.4
v9.13.5
v9.13.6
v9.13.7
v9.14.0rc1
v9.14.11
v9.14.12
v9.14.2
v9.14.4
v9.14.6
v9.14.7
v9.14.8
v9.14.9
v9.15.0
v9.15.2
v9.15.3
v9.15.4
v9.15.5
v9.15.6
v9.15.7
v9.15.8
v9.16.0
v9.16.28
v9.16.29
v9.16.30
v9.16.31
v9.16.32
v9.16.33
v9.16.34
v9.16.35
v9.16.36
v9.16.37
v9.16.38
v9.16.39
v9.16.40
v9.16.41
v9.16.42
v9.16.43
v9.16.44
v9.16.45
v9.16.45-release
v9.16.48
v9.16.49
v9.16.50
v9.16.6
v9.17.4
v9.18.0
v9.18.10
v9.18.11
v9.18.12
v9.18.13
v9.18.14
v9.18.15
v9.18.16
v9.18.17
v9.18.18
v9.18.19
v9.18.2
v9.18.20
v9.18.21
v9.18.24
v9.18.25
v9.18.26
v9.18.27
v9.18.28
v9.18.29
v9.18.3
v9.18.30
v9.18.31
v9.18.32
v9.18.33
v9.18.34
v9.18.35
v9.18.36
v9.18.37
v9.18.38
v9.18.4
v9.18.5
v9.18.6
v9.18.7
v9.18.8
v9.18.9
v9.19.0
v9.19.1
v9.19.10
v9.19.11
v9.19.12
v9.19.13
v9.19.14
v9.19.15
v9.19.16
v9.19.17
v9.19.18
v9.19.19
v9.19.2
v9.19.21
v9.19.22
v9.19.23
v9.19.24
v9.19.3
v9.19.4
v9.19.5
v9.19.6
v9.19.7
v9.19.8
v9.19.9
v9.20.0
v9.20.1
v9.20.10
v9.20.11
v9.20.2
v9.20.3
v9.20.4
v9.20.5
v9.20.6
v9.20.7
v9.20.8
v9.20.9
v9.21.0
v9.21.1
v9.21.10
v9.21.2
v9.21.3
v9.21.4
v9.21.5
v9.21.6
v9.21.7
v9.21.8
v9.21.9
v9.5.0a1
v9.5.0a2
v9.5.0a3
v9.5.0a4
v9.5.0a5
v9.5.0a6
v9.7.0a1
v9.9.0
v9.9.0rc3
v9.9.0rc4
v9.9.1
v9.9.10
v9.9.10b1
v9.9.10rc1
v9.9.10rc2
v9.9.10rc3
v9.9.11b1
v9.9.11rc1
v9.9.12
v9.9.12b1
v9.9.12rc1
v9.9.13
v9.9.13rc2
v9.9.2b1
v9.9.2rc1
v9.9.3
v9.9.3b1
v9.9.3b2
v9.9.3rc1
v9.9.3rc2
v9.9.4
v9.9.4b1
v9.9.4rc1
v9.9.4rc2
v9.9.5
v9.9.5b1
v9.9.5rc1
v9.9.5rc2
v9.9.6
v9.9.6b1
v9.9.6b2
v9.9.6rc1
v9.9.6rc2
v9.9.7
v9.9.7b1
v9.9.7rc1
v9.9.7rc2
v9.9.8
v9.9.8b1
v9.9.8rc1
v9.9.9
v9.9.9b1
v9.9.9b2
v9.9.9rc1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-3136.json"

Git / gitlab.isc.org/isc-projects/bind9

Affected versions

v9.*
v9.8.0
v9.8.1b1
v9.8.1rc1
v9.8.2b1
v9.8.2rc1
v9.8.2rc2
v9.8.3
v9.8.4b1
v9.8.4rc1
v9.8.5
v9.8.5b1
v9.8.5b2
v9.8.5rc1
v9.8.5rc2
v9.8.6
v9.8.6b1
v9.8.6rc1
v9.8.6rc2
v9.8.7
v9.8.7b1
v9.8.7rc1
v9.8.7rc2
v9.8.8
v9.8.8b1
v9.8.8b2
v9.8.8rc1
v9.8.8rc2
v9.9.0
v9.9.1
v9.9.2b1
v9.9.2rc1
v9.9.3b1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-3136.json"