suse · CVE-2022-0396

Quick triage

Priority: medium Published: 2022-05-17 23:55:03 UTC Updated: 2026-03-05 04:59:26 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2022-0396 severity moderate: SUSE including 305 source package names (amazon/suse-sles-15-sp1-chost-byos-v20210304-hvm-ssd-x86_64, amazon/suse-sles-15-sp1-chost-byos-v20220127-hvm-ssd-x86_64, …), 788 product×package rows across 133 product lines (HPE Helion OpenStack 8, Image SLES15-SP4, … (133 product lines)): Known Not Affected 353, Fixed 318, Known Affected 117.

Description:

BIND 9.16.11 -> 9.16.26, 9.17.0 -> 9.18.0 and versions 9.16.11-S1 -> 9.16.26-S1 of the BIND Supported Preview Edition. Specifically crafted TCP streams can cause connections to BIND to remain in CLOSE_WAIT status for an indefinite period of time, even after the client has terminated the connection.

cvelogic Threat Intelligence