Boletines de Vulnerabilidades

DSA-3304 bind9 - security update


Información sobre el sistema

   
Software afectado Debian

Descripción

Breno Silveira Soares of Servico Federal de Processamento de Dados(SERPRO) discovered that the BIND DNS server is prone to a denial ofservice vulnerability. A remote attacker who can cause a validatingresolver to query a zone containing specifically constructed contentscan cause the resolver to terminate with an assertion failure, resultingin a denial of service to clients relying on the resolver.

More info:

https://www.debian.org/security/2015/dsa-3304

Identificadores estándar

Propiedad Valor
CVE CVE-2015-4620 and DSA-3304.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-07-09

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT