CVE-2007-0493

ISC BIND 9.3.0-9.3.3, 9.4.0a1-9.4.0a6, 9.4.0b1-9.4.0b4, 9.4.0rc1, 9.5.0a1 - Use-After-Free

Title source: llm
STIX 2.1

Description

Use-after-free vulnerability in ISC BIND 9.3.0 up to 9.3.3, 9.4.0a1 up to 9.4.0a6, 9.4.0b1 up to 9.4.0b4, 9.4.0rc1, and 9.5.0a1 (Bind Forum only) allows remote attackers to cause a denial of service (named daemon crash) via unspecified vectors that cause named to "dereference a freed fetch context."

References (47)

Core 47
Core References
Vendor Advisory x_refsource_confirm
http://docs.info.apple.com/article.html?artnum=305530
Third Party Advisory vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-200702-06.xml
Various Sources vendor-advisory x_refsource_freebsd
http://security.freebsd.org/advisories/FreeBSD-SA-07:02.bind.asc
Various Sources vendor-advisory x_refsource_hp
https://www2.itrc.hp.com/service/cki/docDisplay.do?docId=c00967144
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/24129
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/24048
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/1939
Vendor Advisory vendor-advisory x_refsource_openpkg
http://www.openpkg.com/security/advisories/OpenPKG-SA-2007.007.html
Vendor Advisory vendor-advisory x_refsource_netbsd
http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2007-003.txt.asc
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23943
Vendor Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDKSA-2007:030
Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2007-0057.html
Vendor Advisory vendor-advisory x_refsource_trustix
http://www.trustix.org/errata/2007/0005
Mailing List vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2007/May/msg00004.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/25402
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/25649
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/24930
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/2163
Mailing List vendor-advisory x_refsource_fedora
http://fedoranews.org/cms/node/2537
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23977
Various Sources x_refsource_confirm
http://www.isc.org/index.pl?/sw/bind/bind-security.php
Vendor Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/usn-418-1
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/24203
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/24014
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/24054
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23974
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/2315
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/458066/100/0/threaded
Various Sources vendor-advisory x_refsource_suse
http://lists.suse.com/archive/suse-security-announce/2007-Jan/0016.html
Issue Tracking x_refsource_confirm
https://issues.rpath.com/browse/RPL-989
Mailing List mailing-list x_refsource_mlist
http://marc.info/?l=bind-announce&m=116968519321296&w=2
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/1401
Mailing List vendor-advisory x_refsource_fedora
http://fedoranews.org/cms/node/2507
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23904
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/22229
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/0349
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1017561
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23924
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9614
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/24950
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23972

Scores

EPSS 0.1384
EPSS Percentile 94.4%

Details

Status published
Products (5)
isc/bind 9.3.0
isc/bind 9.3.1
isc/bind 9.3.2
isc/bind 9.4.0 (2 CPE variants)
isc/bind 9.5.0
Published Jan 25, 2007
Tracked Since Feb 18, 2026