ISC BIND 9.8.x before 9.8.0-P1, when Response Policy Zones (RPZ) RRset replacement is enabled, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via an RRSIG query.
CVSS Details
- CVSS 3.1 Base Score: 5.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade bind9 | Jul 30, 2024 | May 9, 2011 |
| Dns Bind | — | Upgrade to 9.8.0-P1 and use RPZ only for forcing NXDOMAIN responsesUpgrade ISC BIND to latest version | Oct 5, 2011 | May 5, 2011 |
| Suse | — | Upgrade bind-modules-genericUpgrade bind-modules-mysqlUpgrade bind-utilsUpgrade libirs160Upgrade libdns169Upgrade libisccfg160Upgrade bind-docUpgrade bind-modules-sqlite3Upgrade libirs-develUpgrade libisc166Upgrade libbind9-160Upgrade bind-libsUpgrade bindUpgrade bind-modules-ldapUpgrade bind-libs-32bitUpgrade libisccc160Upgrade bind-chrootenvUpgrade python-bindUpgrade bind-modules-perlUpgrade bind-develUpgrade python3-bindUpgrade liblwres160Upgrade libisc166-32bit | Aug 9, 2024 | Jun 28, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub