CVE-2005-0034: Medium severity ISC BIND vulnerability
An "incorrect assumption" in the authvalidated validator function in BIND 9.3.0, when DNSSEC is enabled, allows remote attackers to cause a denial of service (named server exit) via crafted DNS packets that cause an internal consistency test (self-check) to fail.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0034?
CVE-2005-0034 is rated as a high severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2005-0034?
To fix CVE-2005-0034, it is recommended to upgrade BIND to a version later than 9.3.0 that addresses this vulnerability.
What products are affected by CVE-2005-0034?
CVE-2005-0034 specifically affects BIND version 9.3.0 when DNSSEC is enabled.
What type of attack does CVE-2005-0034 enable?
CVE-2005-0034 enables remote attackers to execute a denial of service attack by sending crafted DNS packets.
Is there a workaround for CVE-2005-0034?
While upgrading is the best solution, a temporary workaround includes disabling DNSSEC if it is not crucial for your environment.