Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.10.2018.0353
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2018-0353)
Summary:The remote host is missing an update for the 'bind' package(s) announced via the MGASA-2018-0353 advisory.
Description:Summary:
The remote host is missing an update for the 'bind' package(s) announced via the MGASA-2018-0353 advisory.

Vulnerability Insight:
Updated bind packages fix security vulnerability:

In ISC BIND, a defect in the, this 'deny-answer-aliases' feature makes it easy,
when the feature is in use, to experience an assertion failure in name.c.
Accidental or deliberate triggering of this defect will cause a REQUIRE
assertion failure in named, causing the named process to stop execution
and resulting in denial of service to clients (CVE-2018-5740).

Note that only servers which have explicitly enabled the
'deny-answer-aliases' feature are at risk and disabling the feature
prevents exploitation.

Affected Software/OS:
'bind' package(s) on Mageia 6.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2018-5740
BugTraq ID: 105055
http://www.securityfocus.com/bid/105055
https://security.gentoo.org/glsa/201903-13
https://lists.debian.org/debian-lts-announce/2018/08/msg00033.html
https://lists.debian.org/debian-lts-announce/2021/11/msg00001.html
RedHat Security Advisories: RHSA-2018:2570
https://access.redhat.com/errata/RHSA-2018:2570
RedHat Security Advisories: RHSA-2018:2571
https://access.redhat.com/errata/RHSA-2018:2571
http://www.securitytracker.com/id/1041436
SuSE Security Announcement: openSUSE-SU-2019:1532 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00026.html
SuSE Security Announcement: openSUSE-SU-2019:1533 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00027.html
https://usn.ubuntu.com/3769-1/
https://usn.ubuntu.com/3769-2/
CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.