CVE-2019-16866

Unbound before 1.9.4 accesses uninitialized memory, which allows remote attackers to trigger a crash via a crafted NOTIFY query. The source IP address of the query must match an access-control rule.

Published : 2019-10-03 19:15 Updated : 2019-10-16 15:15

5.0
CVSS Score More info
Score 5.0 / 10
5.0
Vendor Product Version URI
Nlnetlabs Unbound 1.5.0 cpe:/a:nlnetlabs:unbound:1.5.0
Nlnetlabs Unbound 1.6.8 cpe:/a:nlnetlabs:unbound:1.6.8
Canonical Ubuntu Linux 19.04 cpe:/o:canonical:ubuntu_linux:19.04
Nlnetlabs Unbound - cpe:/a:nlnetlabs:unbound:-
Nlnetlabs Unbound 0.0 cpe:/a:nlnetlabs:unbound:0.0
Nlnetlabs Unbound 0.1 cpe:/a:nlnetlabs:unbound:0.1
Nlnetlabs Unbound 0.2 cpe:/a:nlnetlabs:unbound:0.2
Nlnetlabs Unbound 0.3 cpe:/a:nlnetlabs:unbound:0.3
Nlnetlabs Unbound 0.4 cpe:/a:nlnetlabs:unbound:0.4
Nlnetlabs Unbound 0.5 cpe:/a:nlnetlabs:unbound:0.5
Nlnetlabs Unbound 0.6 cpe:/a:nlnetlabs:unbound:0.6
Nlnetlabs Unbound 0.7 cpe:/a:nlnetlabs:unbound:0.7
Nlnetlabs Unbound 0.7.1 cpe:/a:nlnetlabs:unbound:0.7.1
Nlnetlabs Unbound 0.7.2 cpe:/a:nlnetlabs:unbound:0.7.2
Nlnetlabs Unbound 0.8 cpe:/a:nlnetlabs:unbound:0.8
Nlnetlabs Unbound 0.9 cpe:/a:nlnetlabs:unbound:0.9
Nlnetlabs Unbound 0.10 cpe:/a:nlnetlabs:unbound:0.10
Nlnetlabs Unbound 0.11 cpe:/a:nlnetlabs:unbound:0.11
Nlnetlabs Unbound 1.0.0 cpe:/a:nlnetlabs:unbound:1.0.0
Nlnetlabs Unbound 1.0.1 cpe:/a:nlnetlabs:unbound:1.0.1
Nlnetlabs Unbound 1.0.2 cpe:/a:nlnetlabs:unbound:1.0.2
Nlnetlabs Unbound 1.1.0 cpe:/a:nlnetlabs:unbound:1.1.0
Nlnetlabs Unbound 1.1.1 cpe:/a:nlnetlabs:unbound:1.1.1
Nlnetlabs Unbound 1.2.0 cpe:/a:nlnetlabs:unbound:1.2.0
Nlnetlabs Unbound 1.2.1 cpe:/a:nlnetlabs:unbound:1.2.1:-
Nlnetlabs Unbound 1.2.1 cpe:/a:nlnetlabs:unbound:1.2.1:rc1
Nlnetlabs Unbound 1.3.0 cpe:/a:nlnetlabs:unbound:1.3.0:-
Nlnetlabs Unbound 1.3.0 cpe:/a:nlnetlabs:unbound:1.3.0:rc1
Nlnetlabs Unbound 1.3.1 cpe:/a:nlnetlabs:unbound:1.3.1:-
Nlnetlabs Unbound 1.3.1 cpe:/a:nlnetlabs:unbound:1.3.1:rc1
Nlnetlabs Unbound 1.3.1 cpe:/a:nlnetlabs:unbound:1.3.1:rc2
Nlnetlabs Unbound 1.3.2 cpe:/a:nlnetlabs:unbound:1.3.2
Nlnetlabs Unbound 1.3.3 cpe:/a:nlnetlabs:unbound:1.3.3
Nlnetlabs Unbound 1.3.4 cpe:/a:nlnetlabs:unbound:1.3.4
Nlnetlabs Unbound 1.4.0 cpe:/a:nlnetlabs:unbound:1.4.0:-
Nlnetlabs Unbound 1.4.0 cpe:/a:nlnetlabs:unbound:1.4.0:rc1
Nlnetlabs Unbound 1.4.1 cpe:/a:nlnetlabs:unbound:1.4.1
Nlnetlabs Unbound 1.4.2 cpe:/a:nlnetlabs:unbound:1.4.2
Nlnetlabs Unbound 1.4.3 cpe:/a:nlnetlabs:unbound:1.4.3
Nlnetlabs Unbound 1.4.4 cpe:/a:nlnetlabs:unbound:1.4.4:-
Nlnetlabs Unbound 1.4.4 cpe:/a:nlnetlabs:unbound:1.4.4:rc1
Nlnetlabs Unbound 1.4.5 cpe:/a:nlnetlabs:unbound:1.4.5:-
Nlnetlabs Unbound 1.4.5 cpe:/a:nlnetlabs:unbound:1.4.5:rc1
Nlnetlabs Unbound 1.4.6 cpe:/a:nlnetlabs:unbound:1.4.6:-
Nlnetlabs Unbound 1.4.6 cpe:/a:nlnetlabs:unbound:1.4.6:rc1
Nlnetlabs Unbound 1.4.7 cpe:/a:nlnetlabs:unbound:1.4.7:-
Nlnetlabs Unbound 1.4.7 cpe:/a:nlnetlabs:unbound:1.4.7:rc1
Nlnetlabs Unbound 1.4.8 cpe:/a:nlnetlabs:unbound:1.4.8:-
Nlnetlabs Unbound 1.4.8 cpe:/a:nlnetlabs:unbound:1.4.8:rc1
Nlnetlabs Unbound 1.4.9 cpe:/a:nlnetlabs:unbound:1.4.9:-
Nlnetlabs Unbound 1.4.9 cpe:/a:nlnetlabs:unbound:1.4.9:rc1
Nlnetlabs Unbound 1.4.10 cpe:/a:nlnetlabs:unbound:1.4.10
Nlnetlabs Unbound 1.4.11 cpe:/a:nlnetlabs:unbound:1.4.11:-
Nlnetlabs Unbound 1.4.11 cpe:/a:nlnetlabs:unbound:1.4.11:rc1
Nlnetlabs Unbound 1.4.11 cpe:/a:nlnetlabs:unbound:1.4.11:rc2
Nlnetlabs Unbound 1.4.11 cpe:/a:nlnetlabs:unbound:1.4.11:rc3
Nlnetlabs Unbound 1.4.13 cpe:/a:nlnetlabs:unbound:1.4.13:-
Nlnetlabs Unbound 1.4.13 cpe:/a:nlnetlabs:unbound:1.4.13:p2
Nlnetlabs Unbound 1.4.13 cpe:/a:nlnetlabs:unbound:1.4.13:rc1
Nlnetlabs Unbound 1.4.13 cpe:/a:nlnetlabs:unbound:1.4.13:rc2
Nlnetlabs Unbound 1.4.14 cpe:/a:nlnetlabs:unbound:1.4.14:-
Nlnetlabs Unbound 1.4.14 cpe:/a:nlnetlabs:unbound:1.4.14:rc1
Nlnetlabs Unbound 1.4.15 cpe:/a:nlnetlabs:unbound:1.4.15:-
Nlnetlabs Unbound 1.4.15 cpe:/a:nlnetlabs:unbound:1.4.15:rc1
Nlnetlabs Unbound 1.4.16 cpe:/a:nlnetlabs:unbound:1.4.16
Nlnetlabs Unbound 1.4.17 cpe:/a:nlnetlabs:unbound:1.4.17
Nlnetlabs Unbound 1.4.18 cpe:/a:nlnetlabs:unbound:1.4.18:-
Nlnetlabs Unbound 1.4.18 cpe:/a:nlnetlabs:unbound:1.4.18:rc1
Nlnetlabs Unbound 1.4.18 cpe:/a:nlnetlabs:unbound:1.4.18:rc2
Nlnetlabs Unbound 1.4.19 cpe:/a:nlnetlabs:unbound:1.4.19:-
Nlnetlabs Unbound 1.4.19 cpe:/a:nlnetlabs:unbound:1.4.19:rc1
Nlnetlabs Unbound 1.4.20 cpe:/a:nlnetlabs:unbound:1.4.20:-
Nlnetlabs Unbound 1.4.20 cpe:/a:nlnetlabs:unbound:1.4.20:rc1
Nlnetlabs Unbound 1.4.21 cpe:/a:nlnetlabs:unbound:1.4.21:-
Nlnetlabs Unbound 1.4.21 cpe:/a:nlnetlabs:unbound:1.4.21:rc1
Nlnetlabs Unbound 1.4.22 cpe:/a:nlnetlabs:unbound:1.4.22:-
Nlnetlabs Unbound 1.4.22 cpe:/a:nlnetlabs:unbound:1.4.22:rc1
Nlnetlabs Unbound 1.5.0 cpe:/a:nlnetlabs:unbound:1.5.0:rc1
Nlnetlabs Unbound 1.5.1 cpe:/a:nlnetlabs:unbound:1.5.1:-
Nlnetlabs Unbound 1.5.1 cpe:/a:nlnetlabs:unbound:1.5.1:rc1
Nlnetlabs Unbound 1.5.1 cpe:/a:nlnetlabs:unbound:1.5.1:rc2
Nlnetlabs Unbound 1.5.2 cpe:/a:nlnetlabs:unbound:1.5.2:-
Nlnetlabs Unbound 1.5.2 cpe:/a:nlnetlabs:unbound:1.5.2:rc1
Nlnetlabs Unbound 1.5.3 cpe:/a:nlnetlabs:unbound:1.5.3:-
Nlnetlabs Unbound 1.5.3 cpe:/a:nlnetlabs:unbound:1.5.3:rc1
Nlnetlabs Unbound 1.5.4 cpe:/a:nlnetlabs:unbound:1.5.4:-
Nlnetlabs Unbound 1.5.4 cpe:/a:nlnetlabs:unbound:1.5.4:rc1
Nlnetlabs Unbound 1.5.5 cpe:/a:nlnetlabs:unbound:1.5.5
Nlnetlabs Unbound 1.5.6 cpe:/a:nlnetlabs:unbound:1.5.6:-
Nlnetlabs Unbound 1.5.6rc1 cpe:/a:nlnetlabs:unbound:1.5.6rc1:rc1
Nlnetlabs Unbound 1.5.7 cpe:/a:nlnetlabs:unbound:1.5.7:-
Nlnetlabs Unbound 1.5.7 cpe:/a:nlnetlabs:unbound:1.5.7:rc1
Nlnetlabs Unbound 1.5.8 cpe:/a:nlnetlabs:unbound:1.5.8:-
Nlnetlabs Unbound 1.5.8 cpe:/a:nlnetlabs:unbound:1.5.8:rc1
Nlnetlabs Unbound 1.5.9 cpe:/a:nlnetlabs:unbound:1.5.9:-
Nlnetlabs Unbound 1.5.9 cpe:/a:nlnetlabs:unbound:1.5.9:rc1
Nlnetlabs Unbound 1.5.10 cpe:/a:nlnetlabs:unbound:1.5.10:-
Nlnetlabs Unbound 1.5.10 cpe:/a:nlnetlabs:unbound:1.5.10:rc1
Nlnetlabs Unbound 1.6.0 cpe:/a:nlnetlabs:unbound:1.6.0:-
Nlnetlabs Unbound 1.6.0 cpe:/a:nlnetlabs:unbound:1.6.0:rc1
Nlnetlabs Unbound 1.6.1 cpe:/a:nlnetlabs:unbound:1.6.1:-
Nlnetlabs Unbound 1.6.1 cpe:/a:nlnetlabs:unbound:1.6.1:rc1
Nlnetlabs Unbound 1.6.1 cpe:/a:nlnetlabs:unbound:1.6.1:rc2
Nlnetlabs Unbound 1.6.1 cpe:/a:nlnetlabs:unbound:1.6.1:rc3
Nlnetlabs Unbound 1.6.2 cpe:/a:nlnetlabs:unbound:1.6.2:-
Nlnetlabs Unbound 1.6.2 cpe:/a:nlnetlabs:unbound:1.6.2:rc1
Nlnetlabs Unbound 1.6.3 cpe:/a:nlnetlabs:unbound:1.6.3
Nlnetlabs Unbound 1.6.4 cpe:/a:nlnetlabs:unbound:1.6.4:-
Nlnetlabs Unbound 1.6.4 cpe:/a:nlnetlabs:unbound:1.6.4:rc1
Nlnetlabs Unbound 1.6.4 cpe:/a:nlnetlabs:unbound:1.6.4:rc2
Nlnetlabs Unbound 1.6.5 cpe:/a:nlnetlabs:unbound:1.6.5
Nlnetlabs Unbound 1.6.6 cpe:/a:nlnetlabs:unbound:1.6.6:-
Nlnetlabs Unbound 1.6.6 cpe:/a:nlnetlabs:unbound:1.6.6:rc1
Nlnetlabs Unbound 1.6.6 cpe:/a:nlnetlabs:unbound:1.6.6:rc2
Nlnetlabs Unbound 1.6.7 cpe:/a:nlnetlabs:unbound:1.6.7:-
Nlnetlabs Unbound 1.6.7 cpe:/a:nlnetlabs:unbound:1.6.7:rc1
Nlnetlabs Unbound 1.7.0 cpe:/a:nlnetlabs:unbound:1.7.0:-
Nlnetlabs Unbound 1.7.0 cpe:/a:nlnetlabs:unbound:1.7.0:rc1
Nlnetlabs Unbound 1.7.0 cpe:/a:nlnetlabs:unbound:1.7.0:rc2
Nlnetlabs Unbound 1.7.0 cpe:/a:nlnetlabs:unbound:1.7.0:rc3
Nlnetlabs Unbound 1.7.1 cpe:/a:nlnetlabs:unbound:1.7.1
Nlnetlabs Unbound 1.7.2 cpe:/a:nlnetlabs:unbound:1.7.2
Nlnetlabs Unbound 1.7.3 cpe:/a:nlnetlabs:unbound:1.7.3:-
Nlnetlabs Unbound 1.7.3 cpe:/a:nlnetlabs:unbound:1.7.3:rc1
Nlnetlabs Unbound 1.7.3 cpe:/a:nlnetlabs:unbound:1.7.3:rc2
Nlnetlabs Unbound 1.8.0 cpe:/a:nlnetlabs:unbound:1.8.0:-
Nlnetlabs Unbound 1.8.0 cpe:/a:nlnetlabs:unbound:1.8.0:rc1
Nlnetlabs Unbound 1.8.1 cpe:/a:nlnetlabs:unbound:1.8.1:-
Nlnetlabs Unbound 1.8.1 cpe:/a:nlnetlabs:unbound:1.8.1:rc1
Nlnetlabs Unbound 1.8.2 cpe:/a:nlnetlabs:unbound:1.8.2:-
Nlnetlabs Unbound 1.8.2 cpe:/a:nlnetlabs:unbound:1.8.2:rc1
Nlnetlabs Unbound 1.8.3 cpe:/a:nlnetlabs:unbound:1.8.3
Nlnetlabs Unbound 1.9.0 cpe:/a:nlnetlabs:unbound:1.9.0:-
Nlnetlabs Unbound 1.9.0 cpe:/a:nlnetlabs:unbound:1.9.0:rc1
Nlnetlabs Unbound 1.9.2 cpe:/a:nlnetlabs:unbound:1.9.2:-
Nlnetlabs Unbound 1.9.2 cpe:/a:nlnetlabs:unbound:1.9.2:rc1
Nlnetlabs Unbound 1.9.2 cpe:/a:nlnetlabs:unbound:1.9.2:rc2
Nlnetlabs Unbound 1.9.3 cpe:/a:nlnetlabs:unbound:1.9.3:-
Nlnetlabs Unbound 1.9.3 cpe:/a:nlnetlabs:unbound:1.9.3:rc1
Nlnetlabs Unbound 1.9.3 cpe:/a:nlnetlabs:unbound:1.9.3:rc2
  1. Canonical (1) Search CVE
    1. Ubuntu Linux (1) Search CVE
      1. 19.04
  2. Nlnetlabs (1) Search CVE
    1. Unbound (81) Search CVE
      1. 1.5.0
      2. 1.6.8
      3. -
      4. 0.0
      5. 0.1
      6. 0.2
      7. 0.3
      8. 0.4
      9. 0.5
      10. 0.6
      11. 0.7
      12. 0.7.1
      13. 0.7.2
      14. 0.8
      15. 0.9
      16. 0.10
      17. 0.11
      18. 1.0.0
      19. 1.0.1
      20. 1.0.2
      21. 1.1.0
      22. 1.1.1
      23. 1.2.0
      24. 1.2.1
      25. 1.3.0
      26. 1.3.1
      27. 1.3.2
      28. 1.3.3
      29. 1.3.4
      30. 1.4.0
      31. 1.4.1
      32. 1.4.2
      33. 1.4.3
      34. 1.4.4
      35. 1.4.5
      36. 1.4.6
      37. 1.4.7
      38. 1.4.8
      39. 1.4.9
      40. 1.4.10
      41. 1.4.11
      42. 1.4.13
      43. 1.4.14
      44. 1.4.15
      45. 1.4.16
      46. 1.4.17
      47. 1.4.18
      48. 1.4.19
      49. 1.4.20
      50. 1.4.21
      51. 1.4.22
      52. 1.5.1
      53. 1.5.2
      54. 1.5.3
      55. 1.5.4
      56. 1.5.5
      57. 1.5.6
      58. 1.5.6rc1
      59. 1.5.7
      60. 1.5.8
      61. 1.5.9
      62. 1.5.10
      63. 1.6.0
      64. 1.6.1
      65. 1.6.2
      66. 1.6.3
      67. 1.6.4
      68. 1.6.5
      69. 1.6.6
      70. 1.6.7
      71. 1.7.0
      72. 1.7.1
      73. 1.7.2
      74. 1.7.3
      75. 1.8.0
      76. 1.8.1
      77. 1.8.2
      78. 1.8.3
      79. 1.9.0
      80. 1.9.2
      81. 1.9.3

CWE

ID Name Description Links
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer The software performs operations on a memory buffer, but it can read from or write to a memory location that is outside of the intended boundary of the buffer. CVE

History of changes

Date Event
2019-10-16 15:15
2019-10-08 15:56
2019-10-03 19:31

New CVE