CVE-2009-3602
13.10.2009, 10:30
Unbound before 1.3.4 does not properly verify signatures for NSEC3 records, which allows remote attackers to cause secure delegations to be downgraded via DNS spoofing or other DNS-related attacks in conjunction with crafted delegation responses.Enginsight
Vendor | Product | Version |
---|---|---|
nlnetlabs | unbound | 𝑥 ≤ 1.3.3 |
nlnetlabs | unbound | 0.0 |
nlnetlabs | unbound | 0.1 |
nlnetlabs | unbound | 0.2 |
nlnetlabs | unbound | 0.3 |
nlnetlabs | unbound | 0.4 |
nlnetlabs | unbound | 0.5 |
nlnetlabs | unbound | 0.6 |
nlnetlabs | unbound | 0.7 |
nlnetlabs | unbound | 0.7.1 |
nlnetlabs | unbound | 0.7.2 |
nlnetlabs | unbound | 0.8 |
nlnetlabs | unbound | 0.09 |
nlnetlabs | unbound | 0.10 |
nlnetlabs | unbound | 0.11 |
nlnetlabs | unbound | 1.0.0 |
nlnetlabs | unbound | 1.0.1 |
nlnetlabs | unbound | 1.0.2 |
nlnetlabs | unbound | 1.1.0 |
nlnetlabs | unbound | 1.1.1 |
nlnetlabs | unbound | 1.2.0 |
nlnetlabs | unbound | 1.2.1 |
nlnetlabs | unbound | 1.3.0 |
nlnetlabs | unbound | 1.3.1 |
nlnetlabs | unbound | 1.3.2 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References