CVE-2022-2795

Source
https://nvd.nist.gov/vuln/detail/CVE-2022-2795
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-2795.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-2795
Downstream
Related
Published
2022-09-21T11:15:09Z
Modified
2025-10-18T09:22:02.237624Z
Severity
  • 5.3 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L CVSS Calculator
Summary
[none]
Details

By flooding the target resolver with queries exploiting this flaw an attacker can significantly impair the resolver's performance, effectively denying legitimate clients access to the DNS resolution service.

References

Affected packages

Git / github.com/isc-projects/bind9

Affected ranges

Type
GIT
Repo
https://github.com/isc-projects/bind9
Events

Affected versions

v9.*

v9.18.0
v9.18.2
v9.18.3
v9.18.4
v9.18.5
v9.18.6

Git / github.com/isc-projects/bind9

Affected ranges

Type
GIT
Repo
https://gitlab.isc.org/isc-projects/bind9
Events