Skip to main content

ISC BIND Denial of Service Vulnerability

Last Update Date: 18 Jun 2014 Release Date: 13 Jun 2014 3084 Views

RISK: Medium Risk

TYPE: Servers - Other Servers

TYPE: Other Servers

A vulnerability was identified in ISC BIND. A remote user can cause denial of service conditions.

A remote user can send a specially crafted query to trigger a flaw in EDNS option processing and cause the target service to crash.

Both authoritative and recursive servers are affected.

The vulnerability resides in libdns. As a result, applications that use the library may be affected.


Impact

  • Denial of Service

System / Technologies affected

  • Version 9.10.0
  • Version 9.10.0-P1

 


Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix (9.10.0-P2).

Vulnerability Identifier


Source


Related Link