Oval Definition:oval:org.mitre.oval:tst:39349
Comment:bind-libs is earlier than 30:9.3.6-4.P1.el5_4.1
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14348
State:oval:org.mitre.oval:ste:11312
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:10821
V
Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P4, 9.5 before 9.5.2-P1, 9.6 before 9.6.1-P2, and 9.7 beta before 9.7.0b3, with DNSSEC validation enabled and checking disabled (CD), allows remote attackers to conduct DNS cache poisoning attacks by receiving a recursive client query and sending a response that contains an Additional section with crafted data, which is not properly handled when the response is processed "at the same time as requesting DNSSEC records (DO)," aka Bug 20438.
2013-04-29
BACK