Oval Definition:oval:org.mitre.oval:def:14343
Revision Date:2015-04-20Version:30
Title:HP-UX Running BIND, Remote Denial of Service (DoS)
Description:query.c in ISC BIND 9.0.x through 9.6.x, 9.4-ESV through 9.4-ESV-R5, 9.6-ESV through 9.6-ESV-R5, 9.7.0 through 9.7.4, 9.8.0 through 9.8.1, and 9.9.0a1 through 9.9.0b1 allows remote attackers to cause a denial of service (assertion failure and named exit) via unknown vectors related to recursive DNS queries, error logging, and the caching of an invalid record by the resolver.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2011-4313
Platform(s):HP-UX 11
Product(s):
Definition Synopsis
  • Criteria meets HP Security Bulletin HPSBUX02729
  • HP-UX B.11.23
  • AND filesets tests
  • InternetSrvcs.INETSVCS-INETD is installed
  • OR InternetSrvcs.INETSVCS-RUN is installed
  • OR InternetSrvcs.INETSVCS2-RUN is installed
  • AND NOT Patch PHNE_42727 is installed
  • OR Criteria meets HP Security Bulletin HPSBUX02729
  • HP-UX B.11.23
  • AND filesets tests
  • BindUpgrade.BIND-UPGRADE version is less than C.9.3.2.9.1
  • OR BindUpgrade.BIND2-UPGRADE version is less than C.9.3.2.9.1
  • OR Criteria meets HP Security Bulletin HPSBUX02729
  • HP-UX B.11.11
  • AND BINDv920.INETSVCS-BIND version is less than B.11.11.01.017
  • OR Criteria meets HP Security Bulletin HPSBUX02729
  • HP-UX B.11.11
  • AND BindUpgrade.BIND-UPGRADE version is less than C.9.3.2.9.1
  • OR Criteria meets HP Security Bulletin HPSBUX02729
  • HP-UX B.11.31
  • AND filesets tests
  • NameService.BIND-AUX version is less than C.9.3.2.10.1
  • OR NameService.BIND-RUN version is less than C.9.3.2.10.1
  • BACK