CVE-2024-0760
A flood of DNS messages over TCP may make the server unstable
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
A malicious client can send many DNS messages over TCP, potentially causing the server to become unstable while the attack is in progress. The server may recover after the attack ceases. Use of ACLs will not mitigate the attack. This issue affects BIND 9 versions 9.18.1 through 9.18.27, 9.19.0 through 9.19.24, and 9.18.11-S1 through 9.18.27-S1.
Un cliente malintencionado puede enviar muchos mensajes DNS a través de TCP, lo que podría provocar que el servidor se vuelva inestable mientras el ataque está en curso. El servidor puede recuperarse una vez que cese el ataque. El uso de ACL no mitigará el ataque. Este problema afecta a las versiones 9.18.1 a 9.18.27, 9.19.0 a 9.19.24 y 9.18.11-S1 a 9.18.27-S1 de BIND 9.
It was discovered that Bind incorrectly handled a flood of DNS messages over TCP. A remote attacker could possibly use this issue to cause Bind to become unstable, resulting in a denial of service. Toshifumi Sakaguchi discovered that Bind incorrectly handled having a very large number of RRs existing at the same time. A remote attacker could possibly use this issue to cause Bind to consume resources, leading to a denial of service.
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2024-01-19 CVE Reserved
- 2024-07-23 CVE Published
- 2025-02-13 CVE Updated
- 2025-03-12 First Exploit
- 2025-05-31 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-770: Allocation of Resources Without Limits or Throttling
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://www.openwall.com/lists/oss-security/2024/07/23/1 |
|
|
http://www.openwall.com/lists/oss-security/2024/07/31/2 |
|
URL | Date | SRC |
---|---|---|
https://github.com/SpiralBL0CK/CVE-2024-0760 | 2025-03-12 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://kb.isc.org/docs/cve-2024-0760 | 2024-07-24 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
ISC Search vendor "ISC" | BIND 9 Search vendor "ISC" for product "BIND 9" | >= 9.18.1 <= 9.18.27 Search vendor "ISC" for product "BIND 9" and version " >= 9.18.1 <= 9.18.27" | en |
Affected
| ||||||
ISC Search vendor "ISC" | BIND 9 Search vendor "ISC" for product "BIND 9" | >= 9.19.0 <= 9.19.24 Search vendor "ISC" for product "BIND 9" and version " >= 9.19.0 <= 9.19.24" | en |
Affected
|