Skip to main content

ISC BIND DNSSEC Denial of Service Vulnerability

Last Update Date: 8 Jul 2015 10:25 Release Date: 8 Jul 2015 3941 Views

RISK: Medium Risk

TYPE: Servers - Network Management

TYPE: Network Management

A vulnerability was identified in ISC BIND. A remote user can cause the target service to crash.

 

A remote user can send a query to the target service for a DNS zone that contains specially crafted zone data to cause the target recursive resolver to crash.

 

Recursive resolvers that perform DNSSEC validation are affected.


Impact

  • Denial of Service

System / Technologies affected

  • 9.7.1 - 9.7.7, 9.8.0 - 9.8.8, 9.9.0 - 9.9.7, 9.10.0 - 9.10.2-P1

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier


Source


Related Link