CVE-2018-5734

Source
https://cve.org/CVERecord?id=CVE-2018-5734
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-5734.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2018-5734
Published
2019-01-16T20:29:00.800Z
Modified
2026-07-08T05:52:32.404812913Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

While handling a particular type of malformed packet BIND erroneously selects a SERVFAIL rcode instead of a FORMERR rcode. If the receiving view has the SERVFAIL cache feature enabled, this can trigger an assertion failure in badcache.c when the request doesn't contain all of the expected information. Affects BIND 9.10.5-S1 to 9.10.5-S4, 9.10.6-S1, 9.10.6-S2.

Database specific
{
    "unresolved_ranges": [
        {
            "cpes": [
                "cpe:2.3:a:isc:bind:9.10.5:s4:*:*:*:*:*:*",
                "cpe:2.3:a:isc:bind:9.10.6:s2:*:*:*:*:*:*"
            ],
            "extracted_events": [
                {
                    "introduced": "9.10.5-s4"
                },
                {
                    "last_affected": "9.10.5-s4"
                },
                {
                    "introduced": "9.10.5-s4"
                },
                {
                    "last_affected": "9.10.5-s4"
                },
                {
                    "introduced": "9.10.6-s2"
                },
                {
                    "last_affected": "9.10.6-s2"
                },
                {
                    "introduced": "9.10.6-s2"
                },
                {
                    "last_affected": "9.10.6-s2"
                }
            ],
            "vendor_product": "isc:bind",
            "source": "CPE_STRING"
        }
    ]
}
References

Affected packages

Git / github.com/isc-projects/bind9

Affected ranges

Type
GIT
Repo
https://github.com/isc-projects/bind9
Events
Database specific
{
    "cpe": [
        "cpe:2.3:a:isc:bind:9.10.5:s1:*:*:*:*:*:*",
        "cpe:2.3:a:isc:bind:9.10.6:s1:*:*:*:*:*:*"
    ],
    "extracted_events": [
        {
            "introduced": "9.10.5-s1"
        },
        {
            "last_affected": "9.10.5-s1"
        },
        {
            "introduced": "9.10.6-s1"
        },
        {
            "last_affected": "9.10.6-s1"
        }
    ],
    "source": "CPE_STRING"
}

Affected versions

9.*
9.10.5-s1
9.10.6-s1
v9.*
v9.10.5
v9.10.5b1
v9.10.5rc1
v9.10.5rc2
v9.10.5rc3
v9.10.6b1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-5734.json"

Git / gitlab.isc.org/isc-projects/bind9

Affected ranges

Type
GIT
Repo
https://gitlab.isc.org/isc-projects/bind9
Events
Database specific
{
    "cpe": [
        "cpe:2.3:a:isc:bind:9.10.5:s1:*:*:*:*:*:*",
        "cpe:2.3:a:isc:bind:9.10.6:s1:*:*:*:*:*:*"
    ],
    "extracted_events": [
        {
            "introduced": "9.10.5-s1"
        },
        {
            "last_affected": "9.10.5-s1"
        },
        {
            "introduced": "9.10.6-s1"
        },
        {
            "last_affected": "9.10.6-s1"
        }
    ],
    "source": "CPE_STRING"
}

Affected versions

9.*
9.10.5-s1
9.10.6-s1
v9.*
v9.10.5
v9.10.5b1
v9.10.5rc1
v9.10.5rc2
v9.10.5rc3
v9.10.6b1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-5734.json"