Skip to main content

ISC BIND and DHCP Multiple Vulnerabilities

Last Update Date: 17 Jan 2018 09:10 Release Date: 17 Jan 2018 3387 Views

RISK: Medium Risk

TYPE: Servers - Other Servers

TYPE: Other Servers

Multiple vulnerabilities have been identified in ISC BIND and DHCP. A remote attacker can exploit these vulnerabilities to trigger denial of service condition on the targeted system.


Impact

  • Denial of Service

System / Technologies affected

  • DHCP: 4.1.0 - 4.1-ESV-R15, 4.2.0 - 4.2.8, 4.3.0 - 4.3.6, older versions may also be affected.

 

  • BIND: 9.0.0 -9.8.x, 9.9.0 - 9.9.11, 9.10.0 - 9.10.6, 9.11.0 - 9.11.2, 9.9.3-S1 - 9.9.11-S1, 9.10.5-S1 - 9.10.6-S1, 9.12.0a1 - 9.12.0rc1

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix :

BIND:

  • 9.9.11-P1
  • 9.10.6-P1
  • 9.11.2-P1
  • 9.12.0rc2
  • 9.9.11-S2
  • 9.10.6-S2


DHCP:

Please refer to this link for detail:
  https://kb.isc.org/article/AA-01541


Vulnerability Identifier


Source


Related Link