Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-4236

A flaw in the networking code handling DNS-over-TLS queries may cause `named` to terminate unexpectedly due to an assertion failure. This happens when internal data structures are incorrectly reused under significant DNS-over-TLS query load. This issue affects BIND 9 versions 9.18.0 through 9.18.18 and 9.18.11-S1 through 9.18.18-S1.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 34.1%
CVSS Severity
CVSS v3 Score 7.5
References
Products affected by CVE-2023-4236
  • Isc » Bind » Version: 9.18.0
    cpe:2.3:a:isc:bind:9.18.0
  • Isc » Bind » Version: 9.18.1
    cpe:2.3:a:isc:bind:9.18.1
  • Isc » Bind » Version: 9.18.10
    cpe:2.3:a:isc:bind:9.18.10
  • Isc » Bind » Version: 9.18.11
    cpe:2.3:a:isc:bind:9.18.11
  • Isc » Bind » Version: 9.18.18
    cpe:2.3:a:isc:bind:9.18.18
  • Isc » Bind » Version: 9.18.2
    cpe:2.3:a:isc:bind:9.18.2
  • Isc » Bind » Version: 9.18.3
    cpe:2.3:a:isc:bind:9.18.3
  • Isc » Bind » Version: 9.18.4
    cpe:2.3:a:isc:bind:9.18.4
  • Isc » Bind » Version: 9.18.5
    cpe:2.3:a:isc:bind:9.18.5
  • Isc » Bind » Version: 9.18.6
    cpe:2.3:a:isc:bind:9.18.6
  • Isc » Bind » Version: 9.18.7
    cpe:2.3:a:isc:bind:9.18.7
  • Isc » Bind » Version: 9.18.8
    cpe:2.3:a:isc:bind:9.18.8
  • Netapp » H300s » Version: N/A
    cpe:2.3:h:netapp:h300s:-
  • Netapp » H410c » Version: N/A
    cpe:2.3:h:netapp:h410c:-
  • Netapp » H410s » Version: N/A
    cpe:2.3:h:netapp:h410s:-
  • Netapp » H500s » Version: N/A
    cpe:2.3:h:netapp:h500s:-
  • Netapp » H700s » Version: N/A
    cpe:2.3:h:netapp:h700s:-
  • Debian » Debian Linux » Version: 10.0
    cpe:2.3:o:debian:debian_linux:10.0
  • Debian » Debian Linux » Version: 11.0
    cpe:2.3:o:debian:debian_linux:11.0
  • Fedoraproject » Fedora » Version: 37
    cpe:2.3:o:fedoraproject:fedora:37
  • Fedoraproject » Fedora » Version: 38
    cpe:2.3:o:fedoraproject:fedora:38
  • Fedoraproject » Fedora » Version: 39
    cpe:2.3:o:fedoraproject:fedora:39
  • Netapp » H300s Firmware » Version: N/A
    cpe:2.3:o:netapp:h300s_firmware:-
  • Netapp » H410c Firmware » Version: N/A
    cpe:2.3:o:netapp:h410c_firmware:-
  • Netapp » H410s Firmware » Version: N/A
    cpe:2.3:o:netapp:h410s_firmware:-
  • Netapp » H500s Firmware » Version: N/A
    cpe:2.3:o:netapp:h500s_firmware:-
  • Netapp » H700s Firmware » Version: N/A
    cpe:2.3:o:netapp:h700s_firmware:-


Contact Us

Shodan ® - All rights reserved