CVE-2023-2829 is a denial-of-service vulnerability affecting specific versions of BIND 9 (9.16.8-S1 through 9.16.41-S1 and 9.18.11-S1 through 9.18.15-S1) and products from ISC and NetApp. A remote attacker can terminate a DNSSEC-validating recursive resolver instance by sending a specially crafted NSEC record when the "Aggressive Use of DNSSEC-Validated Cache" option is enabled. This vulnerability carries a CVSS score of 7.5 (High), indicating a network-based attack with low complexity that can lead to a complete loss of availability. There is no evidence of active exploitation, nor are there publicly available exploit modules or proof-of-concept code. Community discussion and media coverage for this CVE are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 9.16.8, <= 9.16.41CPE matchmatch criteria | cpe:2.3:a:isc:bind:*:*:*:*:supported_preview:*:*:* | ||
>= 9.18.11, <= 9.18.15CPE matchmatch criteria | cpe:2.3:a:isc:bind:*:*:*:*:supported_preview:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:netapp:h500s_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:netapp:h700s_firmware:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
bind: DNSSEC-Validated cache can be remotely terminated with malformed NSEC record
Jun 21, 2023Malformed NSEC records can cause named to terminate unexpectedly when synth-from-dnssec is enabled
Jun 13, 2023Malformed NSEC records can cause named to terminate unexpectedly when synth-from-dnssec is enabled