Release date: 2011-11-16
Updated on: 2011-11-17
Affected Systems:
Isc bind 9.7.1-P2
Isc bind 9.7.1 P1
Isc bind 9.7.1
Isc bind 9.7.0 P2
Isc bind 9.7.0
Isc bind 9.6.1-P3
Isc bind 9.6.1-P2
Isc bind 9.6.0-P1
Isc bind 9.6
Description:
--------------------------------------------------------------------------------
Bugtraq id: 50690
BIND is a widely used DNS protocol, which is maintained by ISC and developed by Nominum.
The isc bind 9 name server has a security vulnerability in processing recursive queries, which can be exploited by malicious users to cause DOS.
After an error is recorded in query. c, the affected server crashes and the message "INSIST (! Dns_rdataset_isassociated (sigrdataset ))".
<* Source: vendor
Link: https://www.isc.org/software/bind/advisories/cve-2011-tbd
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
ISC
---
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.isc.org/