LWN.net Logo

bind: remote denial of service

Package(s):bind9 CVE #(s):CVE-2010-3762
Created:December 13, 2010 Updated:May 31, 2011
Description: From the CVE entry:

ISC BIND before 9.7.2-P2, when DNSSEC validation is enabled, does not properly handle certain bad signatures if multiple trust anchors exist for a single zone, which allows remote attackers to cause a denial of service (daemon crash) via a DNS query.

Alerts:
Ubuntu USN-1139-1 2011-05-30
Mandriva MDVSA-2010:253 2010-12-14
CentOS CESA-2010:0976 2010-12-14
Red Hat RHSA-2010:0976-01 2010-12-13
Debian DSA-2130-1 2010-12-10
Gentoo 201206-01 2012-06-02

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds