|
|
| |
|
| |
bind9: denial of service
| Package(s): | bind9 |
CVE #(s): | CVE-2011-4313
|
| Created: | November 17, 2011 |
Updated: | November 30, 2011 |
| Description: |
From the ISC advisory:
Organizations across the Internet reported crashes interrupting service on BIND 9 nameservers performing recursive queries. Affected servers crashed after logging an error in query.c with the following message: "INSIST(! dns_rdataset_isassociated(sigrdataset))" Multiple versions were reported being affected, including all currently supported release versions of ISC BIND 9.
[...]
An as-yet unidentified network event caused BIND 9 resolvers to cache an invalid record, subsequent queries for which could crash the resolvers with an assertion failure. ISC is working on determining the ultimate cause by which a record with this particular inconsistency is cached. At this time we are making available a patch which makes named recover gracefully from the inconsistency, preventing the abnormal exit. |
| Alerts: |
|
( Log in to post comments)
|
|
|