Vulnerability Bulletins

DSA-3319 bind9 - security update


System information

   
Affected software Debian

Description

Jonathan Foote discovered that the BIND DNS server does not properlyhandle TKEY queries. A remote attacker can take advantage of this flawto mount a denial of service via a specially crafted query triggering anassertion failure and causing BIND to exit.

More info:

https://www.debian.org/security/2015/dsa-3319

Standar resources

Property Value
CVE CVE-2015-5477 and DSA-3319.

Version history

Version Comments Date
1.0 Advisory issued 2015-07-29
Ministerio de Defensa
CNI
CCN
CCN-CERT