ISC BIND DNSSEC Denial of Service Vulnerability
Last Update Date:
8 Jul 2015 10:25
Release Date:
8 Jul 2015
3941
Views
RISK: Medium Risk
TYPE: Servers - Network Management
A vulnerability was identified in ISC BIND. A remote user can cause the target service to crash.
A remote user can send a query to the target service for a DNS zone that contains specially crafted zone data to cause the target recursive resolver to crash.
Recursive resolvers that perform DNSSEC validation are affected.
Impact
- Denial of Service
System / Technologies affected
- 9.7.1 - 9.7.7, 9.8.0 - 9.8.8, 9.9.0 - 9.9.7, 9.10.0 - 9.10.2-P1
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- The vendor has issued a fix (9.9.7-P1, 9.10.2-P2).
https://kb.isc.org/article/AA-01267
Vulnerability Identifier
Source
Related Link
Share with