Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Elceef

#33119of 53,624
7.8Total CVSS
Vulnerabilities · 1
PT-2015-6934
7.8
2015-07-28
Isc · Isc Bind 9.X · CVE-2015-5477
**Name of the Vulnerable Software and Affected Versions** ISC BIND 9.x versions 9.9.7 through 9.9.7-P1 ISC BIND 9.x version 9.10.x through 9.10.2-P2 **Description** The issue allows remote attackers to cause a denial of service via TKEY queries, resulting in a REQUIRE assertion failure and daemon exit. By sending specially-crafted packets, a remote attacker could exploit this to cause the daemon to exit. **Recommendations** For ISC BIND 9.x versions 9.9.7 through 9.9.7-P1, update to version 9.9.7-P2 or later. For ISC BIND 9.x version 9.10.x through 9.10.2-P2, update to version 9.10.2-P3 or later. As a temporary workaround, consider restricting access to TKEY queries until a patch is available.