🛡️ CLSA-2024-1717139314 — bind

⚪ Unknown ✅ No Known Exploit OSV
N/A
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

bind: Fix of 2 CVEs

  • Moved tuxcare patches from 32:9.11.4-26.P2.14
  • CVE-2023-50387: Resolved CPU exhaustion from specially crafted DNSSEC-signed

zone responses

  • CVE-2023-50868: Resolved CPU exhaustion from DNSSEC-signed zones using NSEC3

Affected software

CLSA-2024-1717139314 is recorded against 16 packages.

  • bind (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-chroot (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-devel (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-export-devel (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-export-libs (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-libs (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-libs-lite (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-license (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-lite-devel (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-pkcs11 (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-pkcs11-devel (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-pkcs11-libs (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-pkcs11-utils (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-sdb (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-sdb-chroot (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)
  • bind-utils (fixed in 33:9.11.4-26.P2.el7_9.15.tuxcare.els1)

Timeline and source

Published on 31 May 2024 and last revised on 1 June 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.

References

errata.tuxcare.com (Advisory)

Details

Severity Unknown
CVSS Score N/A
CVSS Vector N/A
CWE N/A
Public Exploit ✅ No
Source OSV
Published 2024-05-31
Updated 2026-08-12
Modified 2026-06-01
Fix URL N/A

Affected Packages

Software From version Fixed in
bind 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-chroot 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-devel 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-export-devel 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-export-libs 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-libs 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-libs-lite 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-license 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-lite-devel 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-pkcs11 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-pkcs11-devel 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-pkcs11-libs 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-pkcs11-utils 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-sdb 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-sdb-chroot 33:9.11.4-26.P2.el7_9.15.tuxcare.els1
bind-utils 33:9.11.4-26.P2.el7_9.15.tuxcare.els1

Free Vulnerability Check

Is your site affected by CLSA-2024-1717139314?

BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against CLSA-2024-1717139314 and other known CVE records.

Scan My Site Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.