vulnerability

Amazon Linux AMI 2: CVE-2019-6465: Security patch for bind (ALAS-2020-1441)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:P/I:N/A:N)
Published
Oct 9, 2019
Added
Jul 2, 2020
Modified
Nov 27, 2024

Description

Controls for zone transfers may not be properly applied to Dynamically Loadable Zones (DLZs) if the zones are writable Versions affected: BIND 9.9.0 -> 9.10.8-P1, 9.11.0 -> 9.11.5-P2, 9.12.0 -> 9.12.3-P2, and versions 9.9.3-S1 -> 9.11.5-S3 of BIND 9 Supported Preview Edition. Versions 9.13.0 -> 9.13.6 of the 9.13 development branch are also affected. Versions prior to BIND 9.9.0 have not been evaluated for vulnerability to CVE-2019-6465.

Solutions

amazon-linux-ami-2-upgrade-bindamazon-linux-ami-2-upgrade-bind-chrootamazon-linux-ami-2-upgrade-bind-debuginfoamazon-linux-ami-2-upgrade-bind-develamazon-linux-ami-2-upgrade-bind-export-develamazon-linux-ami-2-upgrade-bind-export-libsamazon-linux-ami-2-upgrade-bind-libsamazon-linux-ami-2-upgrade-bind-libs-liteamazon-linux-ami-2-upgrade-bind-licenseamazon-linux-ami-2-upgrade-bind-lite-develamazon-linux-ami-2-upgrade-bind-pkcs11amazon-linux-ami-2-upgrade-bind-pkcs11-develamazon-linux-ami-2-upgrade-bind-pkcs11-libsamazon-linux-ami-2-upgrade-bind-pkcs11-utilsamazon-linux-ami-2-upgrade-bind-sdbamazon-linux-ami-2-upgrade-bind-sdb-chrootamazon-linux-ami-2-upgrade-bind-utils
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.