CVE-2014-8680
- EPSS 2.26%
- Veröffentlicht 11.12.2014 02:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The GeoIP functionality in ISC BIND 9.10.0 through 9.10.1 allows remote attackers to cause a denial of service (assertion failure and named exit) via vectors related to (1) the lack of GeoIP databases for both IPv4 and IPv6, or (2) IPv6 support with ...
CVE-2014-8500
- EPSS 58.42%
- Veröffentlicht 11.12.2014 02:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
ISC BIND 9.0.x through 9.8.x, 9.9.0 through 9.9.6, and 9.10.0 through 9.10.1 does not limit delegation chaining, which allows remote attackers to cause a denial of service (memory consumption and named crash) via a large or infinite number of referra...
- EPSS 29.82%
- Veröffentlicht 13.06.2014 11:19:57
- Zuletzt bearbeitet 12.04.2025 10:46:40
libdns in ISC BIND 9.10.0 before P2 does not properly handle EDNS options, which allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via a crafted packet, as demonstrated by an attack against named, dig, o...
- EPSS 11.26%
- Veröffentlicht 09.05.2014 01:55:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The prefetch implementation in named in ISC BIND 9.10.0, when a recursive nameserver is enabled, allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via a DNS query that triggers a response with unspecifie...
CVE-2014-0591
- EPSS 37.85%
- Veröffentlicht 14.01.2014 04:29:56
- Zuletzt bearbeitet 11.04.2025 00:51:21
The query_findclosestnsec3 function in query.c in named in ISC BIND 9.6, 9.7, and 9.8 before 9.8.6-P2 and 9.9 before 9.9.4-P2, and 9.6-ESV before 9.6-ESV-R10-P2, allows remote attackers to cause a denial of service (INSIST assertion failure and daemo...
CVE-2013-6230
- EPSS 1.06%
- Veröffentlicht 08.11.2013 04:47:23
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9.6-ESV before 9.6-ESV-R10-P1, 9.8 before 9.8.6-P1, 9.9 before 9.9.4-P1, 9.9.3-S1, 9.9.4-S1, and other products, does not properly support the SIO_GET_INTERFACE_LIST comma...
CVE-2013-4854
- EPSS 53.7%
- Veröffentlicht 29.07.2013 13:59:37
- Zuletzt bearbeitet 11.04.2025 00:51:21
The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.4-S1b1, allows remote attackers to cause a denial of service (assertio...
CVE-2013-3919
- EPSS 7.67%
- Veröffentlicht 06.06.2013 13:02:15
- Zuletzt bearbeitet 11.04.2025 00:51:21
resolver.c in ISC BIND 9.8.5 before 9.8.5-P1, 9.9.3 before 9.9.3-P1, and 9.6-ESV-R9 before 9.6-ESV-R9-P1, when a recursive resolver is configured, allows remote attackers to cause a denial of service (assertion failure and named daemon exit) via a qu...
CVE-2013-2266
- EPSS 54.61%
- Veröffentlicht 28.03.2013 16:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
libdns in ISC BIND 9.7.x and 9.8.x before 9.8.4-P2, 9.8.5 before 9.8.5b2, 9.9.x before 9.9.2-P2, and 9.9.3 before 9.9.3b2 on UNIX platforms allows remote attackers to cause a denial of service (memory consumption) via a crafted regular expression, as...
CVE-2012-5689
- EPSS 3.81%
- Veröffentlicht 25.01.2013 12:00:46
- Zuletzt bearbeitet 11.04.2025 00:51:21
ISC BIND 9.8.x through 9.8.4-P1 and 9.9.x through 9.9.2-P1, in certain configurations involving DNS64 with a Response Policy Zone that lacks an AAAA rewrite rule, allows remote attackers to cause a denial of service (assertion failure and named daemo...