Summary
ISC BIND is prone to a remote denial-of-service vulnerability because the software fails to handle certain record types.
An attacker can exploit this issue to cause the application to fall into an infinite loop, denying service to legitimate users.
BIND versions 9.7.1 and 9.7.1-P1 are vulnerable.
Solution
Updates are available. Please see the references for more information.
References
Severity
Classification
-
CVE CVE-2010-0213 -
CVSS Base Score: 2.6
AV:N/AC:H/Au:N/C:N/I:N/A:P
Related Vulnerabilities
- TYPSoft FTP Server 'APPE' and 'DELE' Commands DOS Vulnerability
- WinFTP Server PASV Command Denial of Service Vulnerability
- ngIRCd SSL/TLS Support MOTD Request Multiple Denial Of Service Vulnerabilities
- ISC BIND 9 'RRSIG' Record Type Remote Denial of Service Vulnerability
- ZNC NULL Pointer Dereference Denial Of Service Vulnerability