CVE-2017-3140

If named is configured to use Response Policy Zones (RPZ) an error processing some rule types can lead to a condition where BIND will endlessly loop while handling a query. Affects BIND 9.9.10, 9.10.5, 9.11.0->9.11.1, 9.9.10-S1, 9.10.5-S1.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:isc:bind:*:*:*:*:*:*:*:*
cpe:2.3:a:isc:bind:9.9.10:*:*:*:*:*:*:*
cpe:2.3:a:isc:bind:9.9.10:s1:*:*:*:*:*:*
cpe:2.3:a:isc:bind:9.10.5:*:*:*:*:*:*:*
cpe:2.3:a:isc:bind:9.10.5:s1:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:netapp:data_ontap_edge:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:element_software:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:oncommand_balance:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:24

Type Values Removed Values Added
CVSS v2 : 4.3
v3 : 5.9
v2 : 4.3
v3 : 3.7
References () http://www.securityfocus.com/bid/99088 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/99088 - Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1038692 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1038692 - Third Party Advisory, VDB Entry
References () https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbux03772en_us - Third Party Advisory () https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbux03772en_us - Third Party Advisory
References () https://kb.isc.org/docs/aa-01495 - Vendor Advisory () https://kb.isc.org/docs/aa-01495 - Vendor Advisory
References () https://security.gentoo.org/glsa/201708-01 - Third Party Advisory () https://security.gentoo.org/glsa/201708-01 - Third Party Advisory
References () https://security.netapp.com/advisory/ntap-20180926-0001/ - Third Party Advisory () https://security.netapp.com/advisory/ntap-20180926-0001/ - Third Party Advisory

Information

Published : 2019-01-16 20:29

Updated : 2024-11-21 03:24


NVD link : CVE-2017-3140

Mitre link : CVE-2017-3140

CVE.ORG link : CVE-2017-3140


JSON object : View

Products Affected

netapp

  • element_software
  • oncommand_balance
  • data_ontap_edge

isc

  • bind
CWE
CWE-400

Uncontrolled Resource Consumption