VDB

GCVE-VVD-MAGEIA-2021-220

GCVE-VVD-MAGEIA-2021-220
Advisory Published
Vulnetix · Advisory published November 25, 2021
A broken inbound incremental zone update (IXFR) can cause named to terminate unexpectedly(CVE-2021-25214). Mageia 7 version not affected. An assertion check can fail while answering queries for DNAME records that require the DNAME to be processed to resolve itself (CVE-2021-25215). This affects both versions. A second vulnerability in BIND's GSSAPI security policy negotiation can be targeted by a buffer overflow attack (CVE-2021-25216). Mageia 7 version not affected.

Affected Products

VendorProductVersionsPlatforms
Mageiaqtbase50 (affected), 5.15.2-4.5.mga8 (unaffected)
Mageiabind0 (affected), 9.11.6-1.4.mga7 (unaffected), 0 (affected), 9.11.6-1.4.mga7 (unaffected)
Mageiabind0 (affected), 9.11.31-1.1.mga8 (unaffected), 0 (affected), 9.11.31-1.1.mga8 (unaffected)

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›