PT-2019-8564 · Isc+2 · Bind+2

Dhiru Kholia

·

Published

2017-05-08

·

Updated

2021-05-14

·

CVE-2017-3139

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions BIND (affected versions not specified)
Description A denial of service flaw was found in the way BIND handled DNSSEC validation. A remote attacker could use this flaw to make named exit unexpectedly with an assertion failure via a specially crafted DNS response.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Assertion Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CESA-2017_1202
CVE-2017-3139
RHSA-2017:1202
RHSA-2017:1582
RHSA-2017_1202

Affected Products

Bind
Centos
Red Hat