Infoblox’s global team of threat hunters uncovers a DNS operation with the ability to bypass traditional security measures and control the Great Firewall of China. Read about “Muddling Meerkat” and the many other threat actors discovered by Infoblox Threat Intel here.

NIOS DNS DHCP IPAM

Reply

Is NIOS affected by these four new ISC BIND CVEs?

New Member
Posts: 5
766     0

This Tuesday ISC notified about CVE-2024-0760, CVE-2024-1737, CVE-2024-1975 and CVE-2024-4076. At least CVE-2024-0760 and CVE-2024-4076 looks unpleasant enough to want them patched Real Soon Now if we are affected. Which versions of NIOS still in support are vulnerable, if any? Are there any recommended workarounds?

 

https://kb.isc.org/docs/cve-2024-0760 (note that no older version of BIND than 9.18.1 was assessed)
https://kb.isc.org/docs/cve-2024-1737
https://kb.isc.org/docs/cve-2024-1975
https://kb.isc.org/docs/cve-2024-4076

BR, /Åke Nordin

Re: Is NIOS affected by these four new ISC BIND CVEs?

Authority
Posts: 21
767     0

https://support.infoblox.com/s/article/000009904
The Infoblox NIOS product is vulnerable to CVE-2024-4076, CVE-2024-1975, and CVE-2024-173


https://support.infoblox.com/s/article/000009905
Infoblox NIOS product is not vulnerable to CVE-2024-0760

Showing results for 
Search instead for 
Did you mean: 

Recommended for You