Memory leak in ISC BIND - CVE-2022-2906
Published: September 21, 2022
Vulnerability identifier: #VU67547
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2022-2906
CWE-ID: CWE-401
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to perform DoS attack on the target system.
The vulnerability exists due memory leak in key processing when using TKEY records in Diffie-Hellman mode with OpenSSL 3.0.0 and later versions. A remote attacker can force the application to leak memory and perform denial of service attack.
Affected software
ISC BIND
Gentoo Linux
Oracle Solaris
Ubuntu
openEuler
HPE Moonshot 1500 Chassis Manager
bind9 (Ubuntu package)
bind-export-libs
python3-bind
bind-debugsource
bind-export-devel
bind-libs-lite
bind-chroot
bind-devel
bind-pkcs11-devel
bind-pkcs11
bind-debuginfo
bind-libs
bind-utils
bind
bind-license
bind-pkcs11-libs
bind-dnssec-utils
bind-pkcs11-utils
bind-dnssec-doc
net-dns/bind
net-dns/bind-tools
Gentoo Linux
Oracle Solaris
Ubuntu
openEuler
HPE Moonshot 1500 Chassis Manager
bind9 (Ubuntu package)
bind-export-libs
python3-bind
bind-debugsource
bind-export-devel
bind-libs-lite
bind-chroot
bind-devel
bind-pkcs11-devel
bind-pkcs11
bind-debuginfo
bind-libs
bind-utils
bind
bind-license
bind-pkcs11-libs
bind-dnssec-utils
bind-pkcs11-utils
bind-dnssec-doc
net-dns/bind
net-dns/bind-tools
How to mitigate CVE-2022-2906
Install updates from vendor's website.
ISC BIND - addressed in versions 9.18.7, 9.19.5
HPE Moonshot 1500 Chassis Manager - update to 4.0-b43
bind9 (Ubuntu package) - addressed in versions 1:9.11.3+dfsg-1ubuntu1.18, 1:9.16.1-0ubuntu2.11, 1:9.18.1-1ubuntu1.2
bind-export-libs - addressed in versions 9.11.21-14, 9.11.21-15
python3-bind - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-debugsource - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-export-devel - addressed in versions 9.11.21-14, 9.11.21-15
bind-libs-lite - addressed in versions 9.11.21-14, 9.11.21-15
bind-chroot - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-devel - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-pkcs11-devel - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-pkcs11 - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-debuginfo - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-libs - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-utils - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-license - update to 9.16.23-11
bind-pkcs11-libs - update to 9.16.23-11
bind-dnssec-utils - update to 9.16.23-11
bind-pkcs11-utils - update to 9.16.23-11
bind-dnssec-doc - update to 9.16.23-11
net-dns/bind - update to 9.16.33
net-dns/bind-tools - update to 9.16.33
HPE Moonshot 1500 Chassis Manager - update to 4.0-b43
bind9 (Ubuntu package) - addressed in versions 1:9.11.3+dfsg-1ubuntu1.18, 1:9.16.1-0ubuntu2.11, 1:9.18.1-1ubuntu1.2
bind-export-libs - addressed in versions 9.11.21-14, 9.11.21-15
python3-bind - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-debugsource - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-export-devel - addressed in versions 9.11.21-14, 9.11.21-15
bind-libs-lite - addressed in versions 9.11.21-14, 9.11.21-15
bind-chroot - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-devel - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-pkcs11-devel - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-pkcs11 - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-debuginfo - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-libs - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-utils - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind - addressed in versions 9.11.21-14, 9.11.21-15, 9.16.23-11
bind-license - update to 9.16.23-11
bind-pkcs11-libs - update to 9.16.23-11
bind-dnssec-utils - update to 9.16.23-11
bind-pkcs11-utils - update to 9.16.23-11
bind-dnssec-doc - update to 9.16.23-11
net-dns/bind - update to 9.16.33
net-dns/bind-tools - update to 9.16.33
External References
Related Security Bulletins
- Multiple vulnerabilities in ISC Bind
- Ubuntu update for bind9
- Oracle Solaris update for third-party software
- Gentoo update for ISC BIND
- openEuler 20.03 LTS SP1 update for bind
- openEuler 20.03 LTS SP3 update for bind
- openEuler 22.03 LTS update for bind
- Multiple vulnerabilities in HPE Moonshot 1500 Chassis Manager