CVE Vulnerabilities

CVE-2016-1286

Published: Mar 09, 2016 | Modified: Nov 30, 2023
CVSS 3.x
8.6
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

named in ISC BIND 9.x before 9.9.8-P4 and 9.10.x before 9.10.3-P4 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted signature record for a DNAME record, related to db.c and resolver.c.

Affected Software

Name Vendor Start Version End Version
Bind Isc 9.0.0 (including) 9.9.8 (excluding)
Bind Isc 9.10.0 (including) 9.10.3 (excluding)
Bind Isc 9.9.8 (including) 9.9.8 (including)
Bind Isc 9.9.8-p2 (including) 9.9.8-p2 (including)
Bind Isc 9.9.8-p3 (including) 9.9.8-p3 (including)
Bind Isc 9.9.8-rc1 (including) 9.9.8-rc1 (including)
Bind Isc 9.10.3 (including) 9.10.3 (including)
Bind Isc 9.10.3-beta1 (including) 9.10.3-beta1 (including)
Bind Isc 9.10.3-p1 (including) 9.10.3-p1 (including)
Bind Isc 9.10.3-p2 (including) 9.10.3-p2 (including)
Bind Isc 9.10.3-p3 (including) 9.10.3-p3 (including)
Bind Isc 9.10.3-rc1 (including) 9.10.3-rc1 (including)

References