Skip to main content

ISC BIND Regular Expression Handling Denial of Service Vulnerability

Last Update Date: 28 Mar 2013 11:36 Release Date: 28 Mar 2013 3595 Views

RISK: Medium Risk

TYPE: Servers - Other Servers

TYPE: Other Servers

A vulnerability has been identified in ISC BIND, which can be exploited by malicious people to cause a DoS (Denial of Service). The vulnerability is caused due to an unspecified error when handling regular expressions. This can be exploited to exhaust memory resources and render the server unusable.


Impact

  • Denial of Service

System / Technologies affected

  • ISC BIND 9.7.x
  • ISC BIND 9.8.x
  • ISC BIND 9.9.x

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier


Source


Related Link