|
|
Log in / Subscribe / Register

bind: denial of service

Package(s):bind CVE #(s):CVE-2016-8864
Created:November 2, 2016 Updated:January 11, 2017
Description: From the Arch Linux advisory:

A defect in BIND's handling of responses containing a DNAME answer can cause a resolver to exit after encountering an assertion failure in db.c or resolver.c

During processing of a recursive response that contains a DNAME record in the answer section, BIND can stop execution after encountering an assertion error in resolver.c (error message: "INSIST((valoptions & 0x0002U) != 0) failed") or db.c (error message: "REQUIRE(targetp != ((void *)0) && *targetp == ((void *)0)) failed").

A server encountering either of these error conditions will stop, resulting in denial of service to clients. The risk to authoritative servers is minimal; recursive servers are chiefly at risk.

Alerts:
Fedora FEDORA-2016-9417b4c1dc bind99 2016-11-17
Fedora FEDORA-2016-e38196b52a bind 2016-11-13
Oracle ELSA-2016-2615 bind 2016-11-10
openSUSE openSUSE-SU-2016:2738-1 bind 2016-11-07
openSUSE openSUSE-SU-2016:2739-1 bind 2016-11-07
Slackware SSA:2016-308-02 bind 2016-11-03
Scientific Linux SLSA-2016:2142-1 bind97 2016-11-03
Scientific Linux SLSA-2016:2141-1 bind 2016-11-03
Mageia MGASA-2016-0365 bind 2016-11-04
SUSE SUSE-SU-2016:2706-1 bind 2016-11-02
SUSE SUSE-SU-2016:2697-2 bind 2016-11-03
Oracle ELSA-2016-2142 bind97 2016-11-02
Oracle ELSA-2016-2141 bind 2016-11-02
Oracle ELSA-2016-2141 bind 2016-11-02
Debian-LTS DLA-696-1 bind9 2016-11-02
CentOS CESA-2016:2142 bind97 2016-11-02
CentOS CESA-2016:2141 bind 2016-11-02
CentOS CESA-2016:2141 bind 2016-11-02
Red Hat RHSA-2016:2142-01 bind97 2016-11-02
Red Hat RHSA-2016:2141-01 bind 2016-11-02
Red Hat RHSA-2016:2615-01 bind 2016-11-03
Ubuntu USN-3119-1 bind9 2016-11-01
SUSE SUSE-SU-2016:2696-1 bind 2016-11-02
SUSE SUSE-SU-2016:2697-1 bind 2016-11-02
Debian DSA-3703-1 bind9 2016-11-01
Arch Linux ASA-201611-3 bind 2016-11-01
Oracle ELSA-2017-0063 bind 2017-01-17
Oracle ELSA-2017-0063 bind 2017-01-17
Oracle ELSA-2017-0062 bind 2017-01-17
Gentoo 201701-26 bind 2017-01-11
Scientific Linux SLSA-2016:2615-1 bind 2016-12-14
Red Hat RHSA-2016:2871-01 bind 2016-12-06
Fedora FEDORA-2016-605fd98c32 bind 2016-11-27
Fedora FEDORA-2016-8e39076950 bind99 2016-11-24
Fedora FEDORA-2016-567a5591e4 bind99 2016-11-19
Fedora FEDORA-2016-46137973ba bind 2016-11-19

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds