Sploitus

CVE-2017-3141

4 known exploits for CVE-2017-3141

The BIND installer on Windows uses an unquoted service path which can enable a local user to achieve privilege escalation if the host file system permissions allow this. Affects BIND 9.2.6-P2->9.2.9, 9.3.2-P1->9.3.6, 9.4.0->9.8.8, 9.9.0->9.9.10, 9.10.0->9.10.5, 9.11.0->9.11.1, 9.9.3-S1->9.9.10-S1, 9.10.5-S1.

Affected products
Alt Linux, Bind, Bind Server
Isc Bind
≤ 9.2.9, 9.3.6, 9.8.8, 9.9.10, 9.10.5, 9.11.1, 9.2.6, 9.3.2
Fix
Available
CVSS 3.0
7.8 HIGH
EPSS
1.4% (71th percentile)
Weakness
CWE-428
NVD status
Modified
Published
2019-01-16

Fix

Upgrade to the patched release most closely related to your current version of BIND. These can all be downloaded from http://www.isc.org/downloads. BIND 9 version 9.9.10-P1 BIND 9 version 9.10.5-P1 BIND 9 version 9.11.1-P1 BIND Supported Preview Edition is a special feature preview branch of BIND provided to eligible ISC support customers. BIND 9 version 9.9.10-S2 BIND 9 version 9.10.5-S2

Workaround

BIND installations on Windows are not at risk if the host file permissions prevent creation of a binary in a location where the service executor would run it instead of named.exe.

CVE-2017-3141 at NVD
Authoritative description, scoring and affected products

4 known exploits for CVE-2017-3141

Proof-of-concept code and exploit modules indexed by Sploitus