Vulnerability Details CVE-2017-3140
If named is configured to use Response Policy Zones (RPZ) an error processing some rule types can lead to a condition where BIND will endlessly loop while handling a query. Affects BIND 9.9.10, 9.10.5, 9.11.0->9.11.1, 9.9.10-S1, 9.10.5-S1.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.204
EPSS Ranking 95.2%
CVSS Severity
CVSS v3 Score 3.7
CVSS v2 Score 4.3
Products affected by CVE-2017-3140
-
cpe:2.3:a:isc:bind:9.10.5
-
cpe:2.3:a:isc:bind:9.11.0
-
cpe:2.3:a:isc:bind:9.11.1
-
cpe:2.3:a:isc:bind:9.9.10
-
cpe:2.3:a:netapp:data_ontap_edge:-
-
cpe:2.3:a:netapp:element_software:-
-
cpe:2.3:a:netapp:oncommand_balance:-