9.8.8, 9.9.0->9.9.13, 9.10.0->9.10.8, 9.11.0->9.11.4, 9.12.0->9.12.2, 9.13.0->9.13.2. "> OVAL Reference oval:com.ubuntu.bionic:def:20185740000 - CERT Civis.Net
Oval Definition:oval:com.ubuntu.bionic:def:20185740000
Revision Date:2019-01-16Version:1
Title:CVE-2018-5740 on Ubuntu 18.04 LTS (bionic) - medium.
Description:"deny-answer-aliases" is a little-used feature intended to help recursive server operators protect end users against DNS rebinding attacks, a potential method of circumventing the security model used by client browsers. However, a defect in this feature makes it easy, when the feature is in use, to experience an assertion failure in name.c. Affects BIND 9.7.0->9.8.8, 9.9.0->9.9.13, 9.10.0->9.10.8, 9.11.0->9.11.4, 9.12.0->9.12.2, 9.13.0->9.13.2.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-5740
Platform(s):Ubuntu 18.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 18.04 LTS (bionic) is installed.
  • AND The 'bind9' package in bionic was vulnerable but has been fixed (note: '1:9.11.3+dfsg-1ubuntu1.2').
  • BACK