Bug 1047841 - (CVE-2017-11104) VUL-0: CVE-2017-11104: knot: bypass TSIG authentication
(CVE-2017-11104)
VUL-0: CVE-2017-11104: knot: bypass TSIG authentication
Status: RESOLVED FIXED
Classification: openSUSE
Product: openSUSE Distribution
Classification: openSUSE
Component: Security
Leap 15.1
All All
: P3 - Medium : Normal (vote)
: Leap 15.1
Assigned To: Security Team bot
E-mail List
https://smash.suse.de/issue/188206/
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2017-07-08 12:59 UTC by Marcus Meissner
Modified: 2020-10-27 16:08 UTC (History)
4 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Marcus Meissner 2017-07-08 12:59:08 UTC
CVE-2017-11104

Knot DNS before 2.4.5 and 2.5.x before 2.5.2 contains a flaw within the TSIG protocol implementation that would allow an attacker with a valid key name and algorithm to bypass TSIG authentication if no additional ACL restrictions are set, because of an improper TSIG validity period check.


References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-11104
http://www.synacktiv.ninja/ressources/Knot_DNS_TSIG_Signature_Forgery.pdf
https://bugs.debian.org/865678
https://lists.nic.cz/pipermail/knot-dns-users/2017-June/001144.html
Comment 1 Tomáš Chvátal 2017-07-10 11:50:09 UTC
@darix: any idea if we plan to switch to knot2 and integrate it in TW (Petr is on vacation).
Comment 2 Marcus Rückert 2017-07-17 10:34:43 UTC
I havent submitted it to TW ... and i leave it to the TW maintainer to decide to switch to it or not.
Comment 3 Petr Gajdos 2017-07-21 14:10:45 UTC
I was merely helping Ondrej with packaging, but unfortunately I do not know much about knot itself.
Comment 4 Petr Gajdos 2018-05-11 16:29:02 UTC
Request Tumbleweed and openSUSE:Leap:15.0 drop.
Comment 5 Petr Gajdos 2018-05-11 17:07:36 UTC
Submitted for 42.3/knot.
Comment 6 Swamp Workflow Management 2018-05-11 17:40:05 UTC
This is an autogenerated message for OBS integration:
This bug (1047841) was mentioned in
https://build.opensuse.org/request/show/606511 42.3 / knot
Comment 7 Andreas Stieger 2018-05-19 15:04:45 UTC
(In reply to Petr Gajdos from comment #4)
> Request Tumbleweed and openSUSE:Leap:15.0 drop.

This package remains in 15.0. Can you please submit to Maintenance for 15.0 also?
Comment 8 Swamp Workflow Management 2018-05-23 19:24:40 UTC
openSUSE-SU-2018:1395-1: An update that fixes one vulnerability is now available.

Category: security (moderate)
Bug References: 1047841
CVE References: CVE-2017-11104
Sources used:
openSUSE Leap 42.3 (src):    knot-1.6.5-5.3.1
Comment 9 Alexandros Toptsoglou 2020-07-23 07:59:26 UTC
It is removed from Factory but still in Leap 15.1 and 15.2
Comment 11 OBSbugzilla Bot 2020-07-23 09:40:07 UTC
This is an autogenerated message for OBS integration:
This bug (1047841) was mentioned in
https://build.opensuse.org/request/show/822339 15.1 / knot
https://build.opensuse.org/request/show/822340 15.2 / knot
Comment 12 Swamp Workflow Management 2020-07-26 19:12:56 UTC
openSUSE-SU-2020:1085-1: An update that fixes one vulnerability is now available.

Category: security (moderate)
Bug References: 1047841
CVE References: CVE-2017-11104
Sources used:
openSUSE Leap 15.1 (src):    knot-1.6.8-lp151.4.3.1
Comment 13 Swamp Workflow Management 2020-07-26 19:17:59 UTC
openSUSE-SU-2020:1086-1: An update that fixes one vulnerability is now available.

Category: security (moderate)
Bug References: 1047841
CVE References: CVE-2017-11104
Sources used:
openSUSE Leap 15.2 (src):    knot-1.6.8-lp152.5.3.1
Comment 14 Swamp Workflow Management 2020-07-29 22:18:18 UTC
openSUSE-SU-2020:1112-1: An update that fixes one vulnerability is now available.

Category: security (moderate)
Bug References: 1047841
CVE References: CVE-2017-11104
JIRA References: 
Sources used:
openSUSE Backports SLE-15-SP1 (src):    knot-1.6.8-bp151.4.3.1
Comment 15 Swamp Workflow Management 2020-09-18 16:41:28 UTC
openSUSE-SU-2020:1232-1: An update that fixes one vulnerability is now available.

Category: security (moderate)
Bug References: 1047841
CVE References: CVE-2017-11104
JIRA References: 
Sources used:
openSUSE Backports SLE-15-SP2 (src):    knot-1.6.8-bp152.4.3.1
Comment 16 Alexandros Toptsoglou 2020-10-27 16:08:46 UTC
Done