yocto ▾
›
master ▾
›
vulnerability
›
CVE-2017-3139
Component Overview
Vulnerability Overview
Name
CVE-2017-3139
Source
NVD (
link
)
Debian (
link
)
Description
A denial of service flaw was found in the way BIND handled DNSSEC validation. A remote attacker could use this flaw to make named exit unexpectedly with an assertion failure via a specially crafted DNS response.
CWEs
CWE-617
Published Date
Apr 9, 2019
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://access.redhat.com/security/cve/cve-2017-3139
Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=1447743
Issue Tracking
https://access.redhat.com/security/cve/cve-2017-3139
Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=1447743
Issue Tracking
Analysis
#
Affected Component
Analysis
bind
False Positive
Vulnerability Ratings
#
7.5
CVSSv31
5
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
bind
buildroot
2025.02.x
9.18.49
Not Affected
bind
buildroot
master
9.18.50
Not Affected
bind
openwrt
master
9.20.23-r1
Not Affected
bind
openwrt
openwrt-25.12
9.20.23-r1
Not Affected
bind
yocto
kirkstone
9.18.44
Not Affected
bind
yocto
scarthgap
9.18.44
Not Affected