BIND 9.11.0 -> 9.11.36 9.12.0 -> 9.16.26 9.17.0 -> 9.18.0 BIND Supported Preview Editions: 9.11.4-S1 -> 9.11.36-S1 9.16.8-S1 -> 9.16.26-S1 Versions of BIND 9 earlier than those shown - back to 9.1.0, including Supported Preview Editions - are also believed to be affected but have not been tested as they are EOL. The cache could become poisoned with incorrect records leading to queries being made to the wrong servers, which might also result in false information being returned to clients.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
Configuration 10 (hide)
AND |
|
Configuration 11 (hide)
|
Configuration 12 (hide)
AND |
|
History
No history.
Information
Published : 2022-03-23 13:15
Updated : 2023-11-09 14:44
NVD link : CVE-2021-25220
Mitre link : CVE-2021-25220
CVE.ORG link : CVE-2021-25220
JSON object : View
Products Affected
netapp
- h500e_firmware
- h300e
- h410s
- h700e
- h410c
- h700s_firmware
- h700e_firmware
- h300s_firmware
- h500s
- h300s
- h700s
- h300e_firmware
- h500e
- h410c_firmware
- h410s_firmware
- h500s_firmware
juniper
- srx5000
- junos
- srx3600
- srx320
- srx5400
- srx4600
- srx1400
- srx4100
- srx4200
- srx550_hm
- srx550
- srx5800
- srx4000
- srx650
- srx100
- srx380
- srx550m
- srx110
- srx340
- srx345
- srx1500
- srx5600
- srx3400
- srx240h2
- srx240m
- srx240
- srx220
- srx300
- srx210
siemens
- sinec_ins
isc
- bind
fedoraproject
- fedora
CWE
CWE-444
Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')