CVE-2015-5722

CVSS v2.0 7.8 (High)
78% Progress
EPSS 96.60 % (100th)
96.60% Progress
Affected Products 2
Advisories 18

buffer.c in named in ISC BIND 9.x before 9.9.7-P3 and 9.10.x before 9.10.2-P4 allows remote attackers to cause a denial of service (assertion failure and daemon exit) by creating a zone containing a malformed DNSSEC key and issuing a query for a name in that zone.

Weaknesses
CWE-20
Improper Input Validation
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2015-09-05 02:59:03
(9 years ago)
Updated Date
2016-12-31 02:59:34
(7 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Isc Bind P2 9.9.7 and prior versions cpe:2.3:a:isc:bind::p2 <= 9.9.7
  Isc Bind P3 9.10.2 and prior versions cpe:2.3:a:isc:bind::p3 <= 9.10.2

Configuration #2

    CPE23 From Up To
  Apple Mac Os X Server 5.0.15 cpe:2.3:o:apple:mac_os_x_server:5.0.15
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...