Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2013-4854

The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.4-S1b1, allows remote attackers to cause a denial of service (assertion failure and named daemon exit) via a query with a malformed RDATA section that is not properly handled during construction of a log message, as exploited in the wild in July 2013.

  • Published: Jul 29, 2013
  • Updated: Apr 13, 2023
  • CVE: CVE-2013-4854
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 7.8
  • AV:N/AC:L/Au:N/C:N/I:N/A:C

No CWE or OWASP classifications available.

Software From Fixed in
isc / bind 9.7.5-rc1 9.7.5-rc1.x
isc / bind 9.7.0-rc2 9.7.0-rc2.x
isc / bind 9.7.2-rc1 9.7.2-rc1.x
isc / bind 9.7.0-b1 9.7.0-b1.x
isc / bind 9.7.0-rc1 9.7.0-rc1.x
isc / bind 9.7.0-p2 9.7.0-p2.x
isc / bind 9.7.4-b1 9.7.4-b1.x
isc / bind 9.7.4 9.7.4.x
isc / bind 9.7.7 9.7.7.x
isc / bind 9.7.2 9.7.2.x
isc / bind 9.7.5-b1 9.7.5-b1.x
isc / bind 9.7.2-p2 9.7.2-p2.x
isc / bind 9.7.5-rc2 9.7.5-rc2.x
isc / bind 9.7.1 9.7.1.x
isc / bind 9.7.1-rc1 9.7.1-rc1.x
isc / bind 9.7.1-p2 9.7.1-p2.x
isc / bind 9.7.0 9.7.0.x
isc / bind 9.7.6-p1 9.7.6-p1.x
isc / bind 9.7.0-p1 9.7.0-p1.x
isc / bind 9.7.2-p3 9.7.2-p3.x
isc / bind 9.7.4-rc1 9.7.4-rc1.x
isc / bind 9.7.3-p1 9.7.3-p1.x
isc / bind 9.7.1-p1 9.7.1-p1.x
isc / bind 9.7.3-rc1 9.7.3-rc1.x
isc / bind 9.7.3 9.7.3.x
isc / bind 9.7.2-p1 9.7.2-p1.x
isc / bind 9.7.5 9.7.5.x
isc / bind 9.7.3-b1 9.7.3-b1.x
isc / bind 9.7.6-p2 9.7.6-p2.x
isc / bind 9.7.4-p1 9.7.4-p1.x
isc / bind 9.7.6 9.7.6.x
suse / suse_linux_enterprise_software_development_kit 11.0-sp3 11.0-sp3.x
novell / suse_linux 11 11.x
suse / suse_linux_enterprise_software_development_kit 11.0-sp2 11.0-sp2.x
isc / dnsco_bind 9.9.4-s1b1 9.9.4-s1b1.x
isc / dnsco_bind 9.9.3-s1 9.9.3-s1.x
opensuse / opensuse 11.4 11.4.x
isc / bind 9.9.0-rc2 9.9.0-rc2.x
isc / bind 9.9.0-a3 9.9.0-a3.x
isc / bind 9.9.3-b1 9.9.3-b1.x
isc / bind 9.9.0-a1 9.9.0-a1.x
isc / bind 9.9.0 9.9.0.x
isc / bind 9.9.0-rc3 9.9.0-rc3.x
isc / bind 9.9.0-a2 9.9.0-a2.x
isc / bind 9.9.3-rc1 9.9.3-rc1.x
isc / bind 9.9.0-b1 9.9.0-b1.x
isc / bind 9.9.1-p2 9.9.1-p2.x
isc / bind 9.9.3 9.9.3.x
isc / bind 9.9.3-rc2 9.9.3-rc2.x
isc / bind 9.9.3-p1 9.9.3-p1.x
isc / bind 9.9.0-rc1 9.9.0-rc1.x
isc / bind 9.9.1 9.9.1.x
isc / bind 9.9.0-b2 9.9.0-b2.x
isc / bind 9.9.3-b2 9.9.3-b2.x
isc / bind 9.9.0-rc4 9.9.0-rc4.x
isc / bind 9.9.1-p1 9.9.1-p1.x
isc / bind 9.9.2 9.9.2.x
freebsd / freebsd 8.2 8.2.x
freebsd / freebsd 8.0 8.0.x
freebsd / freebsd 9.0 9.0.x
freebsd / freebsd 9.1 9.1.x
freebsd / freebsd 9.2-rc1 9.2-rc1.x
freebsd / freebsd 8.1 8.1.x
freebsd / freebsd 8.4 8.4.x
freebsd / freebsd 9.2-prerelease 9.2-prerelease.x
freebsd / freebsd 9.2-rc2 9.2-rc2.x
freebsd / freebsd 8.3 8.3.x
freebsd / freebsd 9.1-p4 9.1-p4.x
freebsd / freebsd 9.1-p5 9.1-p5.x
mandriva / business_server 1.0 1.0.x
mandriva / enterprise_server 5.0 5.0.x
redhat / enterprise_linux 6.0 6.0.x
redhat / enterprise_linux 5 5.x
isc / bind 9.8.4 9.8.4.x
isc / bind 9.8.1-b2 9.8.1-b2.x
isc / bind 9.8.3 9.8.3.x
isc / bind 9.8.5-p1 9.8.5-p1.x
isc / bind 9.8.2-b1 9.8.2-b1.x
isc / bind 9.8.1 9.8.1.x
isc / bind 9.8.3-p2 9.8.3-p2.x
isc / bind 9.8.0-a1 9.8.0-a1.x
isc / bind 9.8.0-p4 9.8.0-p4.x
isc / bind 9.8.0-rc1 9.8.0-rc1.x
isc / bind 9.8.2-rc1 9.8.2-rc1.x
isc / bind 9.8.1-rc1 9.8.1-rc1.x
isc / bind 9.8.1-b3 9.8.1-b3.x
isc / bind 9.8.0-p1 9.8.0-p1.x
isc / bind 9.8.6-b1 9.8.6-b1.x
isc / bind 9.8.2-rc2 9.8.2-rc2.x
isc / bind 9.8.5-rc1 9.8.5-rc1.x
isc / bind 9.8.0-p2 9.8.0-p2.x
isc / bind 9.8.1-b1 9.8.1-b1.x
isc / bind 9.8.5-b2 9.8.5-b2.x
isc / bind 9.8.5 9.8.5.x
isc / bind 9.8.3-p1 9.8.3-p1.x
isc / bind 9.8.5-b1 9.8.5-b1.x
isc / bind 9.8.5-rc2 9.8.5-rc2.x
isc / bind 9.8.0-b1 9.8.0-b1.x
isc / bind 9.8.1-p1 9.8.1-p1.x
isc / bind 9.8.0 9.8.0.x
fedoraproject / fedora 18 18.x
fedoraproject / fedora 19 19.x
hp / hp-ux b.11.31 b.11.31.x
slackware / slackware_linux 12.2 12.2.x
slackware / slackware_linux 13.37 13.37.x
slackware / slackware_linux 13.1 13.1.x
slackware / slackware_linux 12.1 12.1.x
slackware / slackware_linux 13.0 13.0.x