The DNS message parsing code in named includes a section whose computational complexity is overly high. It does not cause problems for typical DNS traffic, but crafted queries and responses may cause excessive CPU load on the affected named instance by exploiting this flaw. This issue affects both authoritative servers and recursive resolvers. This issue affects BIND 9 versions 9.0.0 through 9.16.45, 9.18.0 through 9.18.21, 9.19.0 through 9.19.19, 9.9.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.45-S1, and 9.18.11-S1 through 9.18.21-S1.
{
"binaries": [
{
"binary_name": "bind9",
"binary_version": "1:9.16.48-0ubuntu0.20.04.1"
},
{
"binary_name": "bind9-dnsutils",
"binary_version": "1:9.16.48-0ubuntu0.20.04.1"
},
{
"binary_name": "bind9-host",
"binary_version": "1:9.16.48-0ubuntu0.20.04.1"
},
{
"binary_name": "bind9-libs",
"binary_version": "1:9.16.48-0ubuntu0.20.04.1"
},
{
"binary_name": "bind9-utils",
"binary_version": "1:9.16.48-0ubuntu0.20.04.1"
},
{
"binary_name": "bind9utils",
"binary_version": "1:9.16.48-0ubuntu0.20.04.1"
},
{
"binary_name": "dnsutils",
"binary_version": "1:9.16.48-0ubuntu0.20.04.1"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_name": "libbind-dev",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libbind-export-dev",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libbind9-161",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libdns-export1109",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libdns1109",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libirs-export161",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libirs161",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libisc-export1105",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libisc1105",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libisccc-export161",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libisccc161",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libisccfg-export163",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "libisccfg163",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
},
{
"binary_name": "liblwres161",
"binary_version": "1:9.11.16+dfsg-3~ubuntu1"
}
]
}{
"binaries": [
{
"binary_name": "bind9",
"binary_version": "1:9.18.18-0ubuntu0.22.04.2"
},
{
"binary_name": "bind9-dev",
"binary_version": "1:9.18.18-0ubuntu0.22.04.2"
},
{
"binary_name": "bind9-dnsutils",
"binary_version": "1:9.18.18-0ubuntu0.22.04.2"
},
{
"binary_name": "bind9-host",
"binary_version": "1:9.18.18-0ubuntu0.22.04.2"
},
{
"binary_name": "bind9-libs",
"binary_version": "1:9.18.18-0ubuntu0.22.04.2"
},
{
"binary_name": "bind9-utils",
"binary_version": "1:9.18.18-0ubuntu0.22.04.2"
},
{
"binary_name": "bind9utils",
"binary_version": "1:9.18.18-0ubuntu0.22.04.2"
},
{
"binary_name": "dnsutils",
"binary_version": "1:9.18.18-0ubuntu0.22.04.2"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_name": "libbind-dev",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libbind-export-dev",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libbind9-161",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libdns-export1110",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libdns1110",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libirs-export161",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libirs161",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libisc-export1105",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libisc1105",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libisccc-export161",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libisccc161",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libisccfg-export163",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "libisccfg163",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
},
{
"binary_name": "liblwres161",
"binary_version": "1:9.11.19+dfsg-2.1ubuntu3"
}
]
}{
"binaries": [
{
"binary_name": "isc-dhcp-client",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-client-ddns",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-common",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-dev",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-keama",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-relay",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-server",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-server-ldap",
"binary_version": "4.4.3-P1-4ubuntu2"
}
]
}{
"binaries": [
{
"binary_name": "isc-dhcp-client",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-client-ddns",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-common",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-dev",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-keama",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-relay",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-server",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-server-ldap",
"binary_version": "4.4.3-P1-4ubuntu2"
}
]
}{
"binaries": [
{
"binary_name": "isc-dhcp-client",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-client-ddns",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-common",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-dev",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-keama",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-relay",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-server",
"binary_version": "4.4.3-P1-4ubuntu2"
},
{
"binary_name": "isc-dhcp-server-ldap",
"binary_version": "4.4.3-P1-4ubuntu2"
}
]
}{
"binaries": [
{
"binary_name": "bind9",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "bind9-host",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "bind9utils",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "dnsutils",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "host",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "libbind-dev",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "libbind9-90",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "libdns100",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "libisc95",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "libisccc90",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "libisccfg90",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "liblwres90",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
},
{
"binary_name": "lwresd",
"binary_version": "1:9.9.5.dfsg-3ubuntu0.19+esm13"
}
]
}{
"binaries": [
{
"binary_name": "bind9",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "bind9-host",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "bind9utils",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "dnsutils",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "host",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libbind-dev",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libbind-export-dev",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libbind9-140",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libdns-export162",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libdns162",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libirs-export141",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libirs141",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libisc-export160",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libisc160",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libisccc-export140",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libisccc140",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libisccfg-export140",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "libisccfg140",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "liblwres141",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
},
{
"binary_name": "lwresd",
"binary_version": "1:9.10.3.dfsg.P4-8ubuntu1.19+esm9"
}
]
}{
"binaries": [
{
"binary_name": "bind9",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "bind9-host",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "bind9utils",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "dnsutils",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libbind-dev",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libbind-export-dev",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libbind9-160",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libdns-export1100",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libdns1100",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libirs-export160",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libirs160",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libisc-export169",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libisc169",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libisccc-export160",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libisccc160",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libisccfg-export160",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "libisccfg160",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
},
{
"binary_name": "liblwres160",
"binary_version": "1:9.11.3+dfsg-1ubuntu1.19+esm4"
}
]
}