UBUNTU-CVE-2017-3135

Source
https://ubuntu.com/security/CVE-2017-3135
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2017/UBUNTU-CVE-2017-3135.json
JSON Data
https://api.test.osv.dev/v1/vulns/UBUNTU-CVE-2017-3135
Upstream
Downstream
Related
Published
2017-02-09T00:00:00Z
Modified
2025-09-08T16:44:04Z
Severity
  • 5.9 (Medium) CVSS_V3 - CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
  • 7.5 (High) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
  • Ubuntu - medium
Summary
[none]
Details

Under some conditions when using both DNS64 and RPZ to rewrite query responses, query processing can resume in an inconsistent state leading to either an INSIST assertion failure or an attempt to read through a NULL pointer. Affects BIND 9.8.8, 9.9.3-S1 -> 9.9.9-S7, 9.9.3 -> 9.9.9-P5, 9.9.10b1, 9.10.0 -> 9.10.4-P5, 9.10.5b1, 9.11.0 -> 9.11.0-P2, 9.11.1b1.

References

Affected packages

Ubuntu:14.04:LTS / bind9

Package

Name
bind9
Purl
pkg:deb/ubuntu/bind9@1:9.9.5.dfsg-3ubuntu0.13?arch=source&distro=trusty

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:9.9.5.dfsg-3ubuntu0.13

Affected versions

1:9.*

1:9.9.3.dfsg.P2-4ubuntu1
1:9.9.3.dfsg.P2-4ubuntu2
1:9.9.3.dfsg.P2-4ubuntu3
1:9.9.5.dfsg-2
1:9.9.5.dfsg-3
1:9.9.5.dfsg-3ubuntu0.1
1:9.9.5.dfsg-3ubuntu0.2
1:9.9.5.dfsg-3ubuntu0.3
1:9.9.5.dfsg-3ubuntu0.4
1:9.9.5.dfsg-3ubuntu0.5
1:9.9.5.dfsg-3ubuntu0.6
1:9.9.5.dfsg-3ubuntu0.7
1:9.9.5.dfsg-3ubuntu0.8
1:9.9.5.dfsg-3ubuntu0.9
1:9.9.5.dfsg-3ubuntu0.10
1:9.9.5.dfsg-3ubuntu0.11
1:9.9.5.dfsg-3ubuntu0.12

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "bind9"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "bind9-host"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "bind9utils"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "dnsutils"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "host"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "libbind-dev"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "libbind9-90"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "libdns100"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "libisc95"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "libisccc90"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "libisccfg90"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "liblwres90"
        },
        {
            "binary_version": "1:9.9.5.dfsg-3ubuntu0.13",
            "binary_name": "lwresd"
        }
    ],
    "availability": "No subscription required"
}

Ubuntu:16.04:LTS / bind9

Package

Name
bind9
Purl
pkg:deb/ubuntu/bind9@1:9.10.3.dfsg.P4-8ubuntu1.5?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:9.10.3.dfsg.P4-8ubuntu1.5

Affected versions

1:9.*

1:9.9.5.dfsg-11ubuntu1
1:9.9.5.dfsg-12
1:9.9.5.dfsg-12.1
1:9.9.5.dfsg-12.1ubuntu1
1:9.10.3.dfsg.P2-4
1:9.10.3.dfsg.P2-5
1:9.10.3.dfsg.P4-3
1:9.10.3.dfsg.P4-4
1:9.10.3.dfsg.P4-5
1:9.10.3.dfsg.P4-8
1:9.10.3.dfsg.P4-8ubuntu1
1:9.10.3.dfsg.P4-8ubuntu1.1
1:9.10.3.dfsg.P4-8ubuntu1.2
1:9.10.3.dfsg.P4-8ubuntu1.3
1:9.10.3.dfsg.P4-8ubuntu1.4

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "bind9"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "bind9-host"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "bind9utils"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "dnsutils"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "host"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libbind-dev"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libbind-export-dev"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libbind9-140"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libdns-export162"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libdns162"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libirs-export141"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libirs141"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libisc-export160"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libisc160"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libisccc-export140"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libisccc140"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libisccfg-export140"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "libisccfg140"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "liblwres141"
        },
        {
            "binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.5",
            "binary_name": "lwresd"
        }
    ],
    "availability": "No subscription required"
}