[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2014:0043-01 -- Redhat bind

ID: oval:org.secpod.oval:def:501177Date: (C)2014-01-22   (M)2023-12-07
Class: PATCHFamily: unix




The Berkeley Internet Name Domain is an implementation of the Domain Name System protocols. BIND includes a DNS server ; a resolver library ; and tools for verifying that the DNS server is operating correctly. A denial of service flaw was found in the way BIND handled queries for NSEC3-signed zones. A remote attacker could use this flaw against an authoritative name server that served NCES3-signed zones by sending a specially crafted query, which, when processed, would cause named to crash. All bind users are advised to upgrade to these updated packages, which contain a backported patch to correct this issue. After installing the update, the BIND daemon will be restarted automatically.

Platform:
Red Hat Enterprise Linux 6
Product:
bind
Reference:
RHSA-2014:0043-01
CVE-2014-0591
CVE    1
CVE-2014-0591
CPE    112
cpe:/a:isc:bind:9.6-esv-r6:b1
cpe:/a:isc:bind:9.7.6:p2
cpe:/a:isc:bind:9.7.6:p1
cpe:/a:isc:bind:9.6.3:rc1
...

© SecPod Technologies