ISC BIND 9.x before 9.7.6-P3, 9.8.x before 9.8.3-P3, 9.9.x before 9.9.1-P3, and 9.4-ESV and 9.6-ESV before 9.6-ESV-R7-P3 allows remote attackers to cause a denial of service (assertion failure and named daemon exit) via a query for a long resource record.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade bind | Aug 30, 2017 | Sep 14, 2012 |
| Apple Osx Apache | — | Apply OS X security update 2013-004Upgrade macOS to the latest version | Aug 28, 2015 | Sep 14, 2012 |
| Apple Osx Bind | — | Apply OS X security update 2013-004Upgrade macOS to the latest version | Sep 17, 2013 | Sep 14, 2012 |
| Centos_linux | — | Upgrade bind-utilsUpgrade bind97-libsUpgrade bind97-utilsUpgrade bind97-develUpgrade bind97Upgrade caching-nameserverUpgrade bind-chrootUpgrade bind-sdbUpgrade bindUpgrade bind-libbind-develUpgrade bind97-chrootUpgrade bind-libsUpgrade bind-devel | Dec 1, 2016 | Sep 14, 2012 |
| Debian | — | Upgrade bind9 | Jul 30, 2024 | Sep 14, 2012 |
| Dns Bind | — | Upgrade ISC BIND to latest version | Oct 23, 2012 | Sep 14, 2012 |
| F5 Big Ip | — | Update F5 BIG-IP to the latest version | Jun 17, 2026 | Aug 26, 2014 |
| Freebsd | — | Upgrade FreeBSD | Dec 10, 2025 | Nov 24, 2012 |
| Gentoo Linux | — | Upgrade net-dns/bind. | Oct 30, 2017 | Sep 14, 2012 |
| Hpux | — | Update BindUpgrade.BIND2-UPGRADE to the latest versionUpdate BindUpgrade.BIND-UPGRADE to the latest versionUpdate NameService.BIND-AUX to the latest versionUpdate NameService.BIND-RUN to the latest version | Aug 11, 2017 | Sep 14, 2012 |
| Oracle Solaris | — | Upgrade network/dns/bind to version 9.6.3.8.0-0.175.1.1.0.2.0 on Solaris 11.1Upgrade service/network/dns/bind to version 9.6.3.7.3-0.175.0.12.0.4.0 on Solaris 11.0Upgrade service/network/dns/bind to version 9.6.3.8.0-0.175.1.1.0.2.0 on Solaris 11.1Upgrade network/dns/bind to version 9.6.3.7.3-0.175.0.12.0.4.0 on Solaris 11.0 | May 29, 2017 | Sep 14, 2012 |
| Oracle_linux | — | Upgrade bind-libbind-develUpgrade bind-sdbUpgrade bind97Upgrade bind97-chrootUpgrade bind-chrootUpgrade bind-libsUpgrade bindUpgrade caching-nameserverUpgrade bind-utilsUpgrade bind-develUpgrade bind97-libsUpgrade bind97-develUpgrade bind97-utils | Oct 16, 2024 | Sep 14, 2012 |
| Redhat_linux | — | — | Jul 9, 2025 | Sep 12, 2012 |
| Suse | — | Upgrade libisc166-32bitUpgrade bind-modules-sqlite3Upgrade bind-libsUpgrade bind-libs-x86Upgrade libisc166Upgrade bind-docUpgrade bind-modules-mysqlUpgrade bind-modules-ldapUpgrade libisccfg160Upgrade libdns169Upgrade liblwres160Upgrade libbind9-160Upgrade bind-develUpgrade bind-utilsUpgrade libirs160Upgrade python3-bindUpgrade python-bindUpgrade bind-chrootenvUpgrade bind-devel-32bitUpgrade bind-modules-perlUpgrade bind-libs-32bitUpgrade bind-modules-genericUpgrade libisccc160Upgrade libirs-develUpgrade bind | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade libdns36Upgrade libdns69Upgrade libdns81Upgrade libdns64 | Nov 8, 2024 | Sep 14, 2012 |
| Vmsa 2013 0001 | — | Upgrade VMware ESX 4.1 to build number 988178Upgrade VMware ESX 4.0 to build number 989856 | Feb 4, 2013 | Sep 14, 2012 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub