resolver.c in ISC BIND 9.8.5 before 9.8.5-P1, 9.9.3 before 9.9.3-P1, and 9.6-ESV-R9 before 9.6-ESV-R9-P1, when a recursive resolver is configured, allows remote attackers to cause a denial of service (assertion failure and named daemon exit) via a query for a record in a malformed zone.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade bind | Aug 30, 2017 | Jun 6, 2013 |
| Dns Bind | — | Upgrade ISC BIND to latest version | Jun 27, 2013 | Jun 6, 2013 |
| Freebsd | — | Upgrade bind98Upgrade bind99Upgrade bind99-baseUpgrade bind96-baseUpgrade bind96Upgrade bind98-base | Dec 10, 2025 | Jun 6, 2013 |
| Gentoo Linux | — | Upgrade net-dns/bind. | Oct 30, 2017 | Jun 6, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub