Vulnerability Bulletins

IBM Security Bulletin: Security Bulletin: IBM i is affected by networking BIND vulnerability CVE-2015-5722

   
Affected software IBM
 
ISC BIND is vulnerable to a denial of service, caused by the exit of a validating resolver due to an assertion failure in buffer.c.. By parsing a malformed DNSSEC key, a remote attacker could exploit this vulnerability to cause a denial of service. CVE(s): CVE-2015-5722 Affected product(s) and affected version(s): Release 7.2 of IBM i is affected. Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_security_bulletin_ibm_i_is_affected_by_networking_bind_vulnerability_cve_2015_5722?lang=en_us