CVE-2016-8864
- EPSS 43.01%
- Published 02.11.2016 17:59:00
- Last modified 12.04.2025 10:46:40
named in ISC BIND 9.x before 9.9.9-P4, 9.10.x before 9.10.4-P4, and 9.11.x before 9.11.0-P1 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNAME record in the answer section of a response to a recursive...
CVE-2016-2848
- EPSS 51.28%
- Published 21.10.2016 10:59:00
- Last modified 12.04.2025 10:46:40
ISC BIND 9.1.0 through 9.8.4-P2 and 9.9.0 through 9.9.2-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via malformed options data in an OPT resource record.
CVE-2016-2776
- EPSS 90.73%
- Published 28.09.2016 10:59:00
- Last modified 12.04.2025 10:46:40
buffer.c in named in ISC BIND 9 before 9.9.9-P3, 9.10.x before 9.10.4-P3, and 9.11.x before 9.11.0rc3 does not properly construct responses, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted ...
CVE-2016-2775
- EPSS 34.23%
- Published 19.07.2016 22:59:00
- Last modified 12.04.2025 10:46:40
ISC BIND 9.x before 9.9.9-P2, 9.10.x before 9.10.4-P2, and 9.11.x before 9.11.0b2, when lwresd or the named lwres option is enabled, allows remote attackers to cause a denial of service (daemon crash) via a long request that uses the lightweight reso...
CVE-2016-6170
- EPSS 1.91%
- Published 06.07.2016 14:59:05
- Last modified 12.04.2025 10:46:40
ISC BIND through 9.9.9-P1, 9.10.x through 9.10.4-P1, and 9.11.x through 9.11.0b1 allows primary DNS servers to cause a denial of service (secondary DNS server crash) via a large AXFR response, and possibly allows IXFR servers to cause a denial of ser...
CVE-2016-2088
- EPSS 48.56%
- Published 09.03.2016 23:59:04
- Last modified 12.04.2025 10:46:40
resolver.c in named in ISC BIND 9.10.x before 9.10.3-P4, when DNS cookies are enabled, allows remote attackers to cause a denial of service (INSIST assertion failure and daemon exit) via a malformed packet with more than one cookie option.
CVE-2016-1286
- EPSS 68.03%
- Published 09.03.2016 23:59:03
- Last modified 12.04.2025 10:46:40
named in ISC BIND 9.x before 9.9.8-P4 and 9.10.x before 9.10.3-P4 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted signature record for a DNAME record, related to db.c and resolver.c.
CVE-2016-1285
- EPSS 67.84%
- Published 09.03.2016 23:59:02
- Last modified 12.04.2025 10:46:40
named in ISC BIND 9.x before 9.9.8-P4 and 9.10.x before 9.10.3-P4 does not properly handle DNAME records when parsing fetch reply messages, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a malformed...
CVE-2016-1284
- EPSS 9.48%
- Published 04.02.2016 11:59:01
- Last modified 12.04.2025 10:46:40
rdataset.c in ISC BIND 9 Supported Preview Edition 9.9.8-S before 9.9.8-S5, when nxdomain-redirect is enabled, allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via crafted flag values in a query.
- EPSS 29.18%
- Published 20.01.2016 15:59:01
- Last modified 12.04.2025 10:46:40
buffer.c in named in ISC BIND 9.10.x before 9.10.3-P3, when debug logging is enabled, allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit, or daemon crash) or possibly have unspecified other impact via (1) ...