CVE-2023-5680

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Feb 13, 2024
Updated: May 3, 2024

Summary

CVE-2023-5680 is a vulnerability affecting various versions of BIND 9, including 9.11.3-S1 to 9.11.37-S1, 9.16.8-S1 to 9.16.45-S1, and 9.18.11-S1 to 9.18.21-S1. When a resolver cache contains a large number of ECS records with the same name, the cleanup process for that name can significantly decrease query performance. This issue arises due to an inefficient database node cleaning process for such names.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share