PT-2012-5272 · Isc+4 · Isc Bind 9.9.X+8
Published
2012-09-14
·
Updated
2024-06-15
·
CVE-2012-4244
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
ISC BIND 9.x before 9.7.6-P3
ISC BIND 9.8.x before 9.8.3-P3
ISC BIND 9.9.x before 9.9.1-P3
ISC BIND 9.4-ESV and 9.6-ESV before 9.6-ESV-R7-P3
Description
The issue allows remote attackers to cause a denial of service, resulting in an assertion failure and the named daemon exiting, via a query for a long resource record.
Recommendations
For ISC BIND 9.x before 9.7.6-P3, update to version 9.7.6-P3 or later.
For ISC BIND 9.8.x before 9.8.3-P3, update to version 9.8.3-P3 or later.
For ISC BIND 9.9.x before 9.9.1-P3, update to version 9.9.1-P3 or later.
For ISC BIND 9.4-ESV and 9.6-ESV before 9.6-ESV-R7-P3, update to version 9.6-ESV-R7-P3 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Bind Server
Centos
Isc Bind 9.4-Esv
Isc Bind 9.6-Esv
Isc Bind 9.8.X
Isc Bind 9.9.X
Isc Bind 9.X
Red Hat
Suse