ISC BIND 9.8.x before 9.8.4-P1 and 9.9.x before 9.9.2-P1, when DNS64 is enabled, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted query.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Apache | — | Upgrade macOS to the latest versionApply OS X security update 2013-004 | Aug 28, 2015 | Dec 6, 2012 |
| Apple Osx Bind | — | Upgrade macOS to the latest versionApply OS X security update 2013-004 | Sep 17, 2013 | Dec 6, 2012 |
| Centos_linux | — | Upgrade bind-utilsUpgrade bind-sdbUpgrade bind-develUpgrade bindUpgrade bind-chrootUpgrade bind-libs | Dec 1, 2016 | Dec 6, 2012 |
| Debian | — | Upgrade bind9 | Jul 30, 2024 | Dec 6, 2012 |
| Dns Bind | — | Upgrade ISC BIND to latest version | Dec 7, 2012 | Dec 6, 2012 |
| Freebsd | — | Upgrade FreeBSDUpgrade bind98Upgrade bind99Upgrade bind98-baseUpgrade bind99-base | Dec 10, 2025 | Dec 4, 2012 |
| Gentoo Linux | — | Upgrade net-dns/bind. | Oct 30, 2017 | Dec 6, 2012 |
| Oracle_linux | — | Upgrade bind-chrootUpgrade bind-utilsUpgrade bind-libsUpgrade bind-develUpgrade bind-sdbUpgrade bind | Oct 16, 2024 | Dec 6, 2012 |
| Suse | — | Upgrade bind-modules-genericUpgrade bind-modules-ldapUpgrade libirs-develUpgrade bind-modules-sqlite3Upgrade libisc166Upgrade bind-libsUpgrade libirs160Upgrade bind-modules-perlUpgrade bindUpgrade bind-chrootenvUpgrade bind-develUpgrade liblwres160Upgrade bind-docUpgrade libisccc160Upgrade libisccfg160Upgrade libisc166-32bitUpgrade libbind9-160Upgrade libdns169Upgrade bind-libs-32bitUpgrade python-bindUpgrade bind-utilsUpgrade python3-bindUpgrade bind-modules-mysql | Dec 12, 2013 | Jul 9, 2013 |
| Ubuntu | — | Upgrade bind9 | Nov 8, 2024 | Dec 6, 2012 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub