Skip to main content

ISC BIND Denial of Service Vulnerability

Last Update Date: 22 Nov 2019 Release Date: 21 Nov 2019 4327 Views

RISK: Medium Risk

TYPE: Servers - Network Management

TYPE: Network Management

A vulnerability was identified in ISC BIND, a remote attacker could exploit the vulnerability to trigger denial of service condition and security restriction bypass on the targeted system.


Impact

  • Denial of Service
  • Security Restriction Bypass

System / Technologies affected

  • BIND Versions:
    9.11.6-P1 to 9.11.12
    9.12.4-P1 to 9.12.4-P2
    9.14.1 to 9.14.7
    BIND 9 Supported Preview Edition: 9.11.5-S6 to 9.11.12-S1
    BIND 9.15 development branch: 9.15.0 to 9.15.5

Solutions

Before installation of the software, please visit the vendor web-site for more details.

  • Apply fixes issued by the vendor:
    BIND 9.11.13
    BIND 9.14.8
    BIND 9.15.6
    BIND 9.11.13-S1

For detail, please refer to the link below:
https://kb.isc.org/docs/cve-2019-6477


Vulnerability Identifier


Source


Related Link