ALPINE-CVE-2023-5680 PUBLISHED CVSS 5.300000190734863 MEDIUM

If a resolver cache has a very large number of ECS records stored for the same name, the process of cleaning the cache database node for this name can significantly impair query performance. This issue affects BIND 9 versions 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.45-S1, and 9.18.11-S1 through 9.18.21-S1.

Risk Scores

CVSS v3.1
5.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Affected Products

VendorProductVersions
Alpine:v3.23bind9.16.11-r0, 9.9.5-r0, 9.9.4
Alpine:v3.21bind9.10.0-r0, 9.9.5-r0, 9.9.4
Alpine:v3.20bind9.18.3-r1, *, 0
Alpine:v3.16bind9.10.2_p3-r0, 0, 9.9.5-r0
Alpine:v3.19bind9.14.4-r3, 9.14.4-r2, 9.14.4-r1
Alpine:v3.22bind*, 9.16.20-r3, *
Alpine:v3.17bind9.10.0_p2-r1, 9.10.1-r0, 9.10.1-r2
Alpine:v3.18bind9.10.2-r1, 9.10.2_p1-r0, 9.10.2_p1-r1

Timeline

References

Open in Interactive Console →