CVE-2009-0696
PUBLISHEDThe dns_db_findrdataset function in db.c in named in ISC BIND 9.4 before 9.4.3-P3, 9.5 before 9.5.1-P3, and 9.6 before 9.6.1-P1, when configured as...
Recommended Action
Track for updates. Assess relevance to your asset inventory and enrichment workflows.
At a Glance
The dns_db_findrdataset function in db.c in named in ISC BIND 9.4 before 9.4.3-P3, 9.5 before 9.5.1-P3, and 9.6 before 9.6.1-P1, when configured as a master server, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via an ANY record in the prerequisite section of a crafted dynamic update message.
- CVE Published
- Jul 29, 2009
- —
- —
- CVSS
- 4.3 Medium
- EPSS
- —
Affected Versions
| Vendor | Product | Version | Status |
|---|---|---|---|
| n/a |
n/a
|
n/a |
Affected |
CVE References
- 36035 secunia.com · CVE Record http://secunia.com/advisories/36035
- 36063 secunia.com · CVE Record http://secunia.com/advisories/36063
- ADV-2009-2171 vupen.com · CVE Record http://www.vupen.com/english/advisories/2009/2171
- 36056 secunia.com · CVE Record http://secunia.com/advisories/36056
- 36038 secunia.com · CVE Record http://secunia.com/advisories/36038
Show 32 more references
- aix.software.ibm.com/aix/efixes/security/bind_advisory.asc aix.software.ibm.com · CVE Record http://aix.software.ibm.com/aix/efixes/security/bind_advisory.asc
- VU#725188 kb.cert.org · CVE Record http://www.kb.cert.org/vuls/id/725188
- 37471 secunia.com · CVE Record http://secunia.com/advisories/37471
- 36050 secunia.com · CVE Record http://secunia.com/advisories/36050
- [4.4] 014: RELIABILITY FIX: July 29, 2009 openbsd.org · CVE Record http://www.openbsd.org/errata44.html#014_bind
- 20090729 rPSA-2009-0113-1 bind bind-utils securityfocus.com · CVE Record http://www.securityfocus.com/archive/1/505403/100/0/threaded
- 36192 secunia.com · CVE Record http://secunia.com/advisories/36192
- vmware.com/security/advisories/VMSA-2009-0016.html vmware.com · CVE Record http://www.vmware.com/security/advisories/VMSA-2009-0016.html
- ADV-2009-2088 vupen.com · CVE Record http://www.vupen.com/english/advisories/2009/2088
- 1022613 securitytracker.com · CVE Record http://www.securitytracker.com/id?1022613
- isc.org/node/474 isc.org · CVE Record https://www.isc.org/node/474
- 1020788 sunsolve.sun.com · CVE Record http://sunsolve.sun.com/search/document.do?assetkey=1-77-1020788.1-1
- ADV-2009-2247 vupen.com · CVE Record http://www.vupen.com/english/advisories/2009/2247
- oval:org.mitre.oval:def:7806 oval.cisecurity.org · CVE Record https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.m...
- 20091120 VMSA-2009-0016 VMware vCenter and ESX update release and vMA patch release address multiple security issue in third party components securityfocus.com · CVE Record http://www.securityfocus.com/archive/1/507985/100/0/threaded
- 39334 secunia.com · CVE Record http://secunia.com/advisories/39334
- ADV-2009-2036 vupen.com · CVE Record http://www.vupen.com/english/advisories/2009/2036
- wiki.rpath.com/Advisories:rPSA-2009-0113 wiki.rpath.com · CVE Record http://wiki.rpath.com/Advisories:rPSA-2009-0113
- 36098 secunia.com · CVE Record http://secunia.com/advisories/36098
- oval:org.mitre.oval:def:10414 oval.cisecurity.org · CVE Record https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.m...
- up2date.astaro.com/2009/08/up2date_7505_released.html up2date.astaro.com · CVE Record http://up2date.astaro.com/2009/08/up2date_7505_released.html
- USN-808-1 ubuntu.com · CVE Record http://www.ubuntu.com/usn/usn-808-1
- 36086 secunia.com · CVE Record http://secunia.com/advisories/36086
- FEDORA-2009-8119 redhat.com · CVE Record https://www.redhat.com/archives/fedora-package-announce/2009-July/msg...
- oval:org.mitre.oval:def:12245 oval.cisecurity.org · CVE Record https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.m...
- 36053 secunia.com · CVE Record http://secunia.com/advisories/36053
- ftp.sco.compub/unixware7/714/security/p535243_uw7/p53524... ftp.sco.com · CVE Record ftp://ftp.sco.com/pub/unixware7/714/security/p535243_uw7/p535243b.txt
- SSA:2009-210-01 slackware.com · CVE Record http://www.slackware.com/security/viewer.php?l=slackware-security&y=2...
- NetBSD-SA2009-013 ftp.netbsd.org · CVE Record ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2009-013...
- ADV-2009-3316 vupen.com · CVE Record http://www.vupen.com/english/advisories/2009/3316
- bugs.debian.org/cgi-bin/bugreport.cgi bugs.debian.org · CVE Record http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=538975
- 264828 sunsolve.sun.com · CVE Record http://sunsolve.sun.com/search/document.do?assetkey=1-26-264828-1
Recommended Actions
- Track for updates. Assess relevance to your asset inventory and enrichment workflows.
- Use the Pro API to automate enrichment, telemetry, and workflow delivery for VM, SOC, and CTI pipelines.
No detection artifacts or sensor request patterns are available for this CVE yet.
Check back as sensor telemetry and scanner integrations are updated.
Virtual Patch
Compensating WAF rules to help reduce exposure to this CVE. Rule content and deployable vendor exports are available with KEVIntel Enterprise.
KEVIntel does not currently have a virtual patch for this CVE. When available, KEVIntel virtual patches ship as deployable ModSecurity, Cloudflare, and AWS WAF rules.
Enterprise feature. Virtual patch rule content and deployable vendor exports (ModSecurity, Cloudflare, AWS WAF) are available to KEVIntel Enterprise users.
CVSS Scores
AV:N/AC:M/Au:N/C:N/I:N/A:P
Exploitation Status
No exploitation signals recorded yet.
Timeline
Key exploitation, disclosure, scanner coverage, and KEV attestation events for this CVE.
-
17:00 UTC almost 17 years ago17:00 UTC · almost 17 years ago
CVE published
Vulnerability disclosed publicly
-
00:00 UTC over 17 years ago00:00 UTC · over 17 years ago
CVE ID reserved
Identifier reserved by the CNA
Automate This Intelligence with the Pro API
Confidence scoring, exploit status, sensor telemetry, PoCs, scanner integrations, mentions, and tags are available programmatically for VM, SOC, and CTI workflows.
Pro API Example
GET /api/v2/pro/kevs/CVE-2009-0696
{
"cve_id": "CVE-2009-0696",
"title": "The dns_db_findrdataset function in db.c in named in ISC BIND 9.4 before 9.4....",
"affected_vendor": "ISC",
"affected_product": "BIND",
"affected_versions": [
{ "vendor": "...", "product": "...", "status": "affected", "display_label": "..." }
],
"confidence": null,
"cvss_score": 4.3,
"epss_score": null,
"exploit_status": {
"exploited_in_the_wild": false,
"active_exploitation_observed": false
},
"sensor_telemetry": { "...": "Pro API fields" },
"proof_of_concepts": [ "..." ],
"scanner_integrations": [ "..." ]
}