REDHAT-BUG-2405829: High severity ISC BIND vulnerability
In specific circumstances, due to a weakness in the Pseudo Random Number Generator (PRNG) that is used, it is possible for an attacker to predict the source port and query ID that BIND will use.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2405829?
The severity of REDHAT-BUG-2405829 is classified as high due to the potential for source port and query ID prediction.
What is the cause of REDHAT-BUG-2405829?
REDHAT-BUG-2405829 is caused by a weakness in the Pseudo Random Number Generator (PRNG) used by BIND.
How can I mitigate REDHAT-BUG-2405829?
Mitigation for REDHAT-BUG-2405829 involves updating BIND to the latest version that resolves the identified weakness.
Who is affected by REDHAT-BUG-2405829?
Any system running ISC BIND is potentially affected by REDHAT-BUG-2405829 if it utilizes the vulnerable PRNG.
What are the potential impacts of REDHAT-BUG-2405829?
The potential impacts of REDHAT-BUG-2405829 include unauthorized access and manipulation of DNS queries due to predictable port and ID values.