|
|
| |
|
| |
bind9: denial of service
| Package(s): | bind9 |
CVE #(s): | CVE-2013-4854
|
| Created: | July 29, 2013 |
Updated: | August 19, 2013 |
| Description: |
From the CVE entry:
The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.4-S1b1, allows remote attackers to cause a denial of service (assertion failure and named daemon exit) via a query with a malformed RDATA section that is not properly handled during construction of a log message, as exploited in the wild in July 2013. |
| Alerts: |
|
( Log in to post comments)
|
|
|