Zero-friction vulnerability management platform

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

ISC BIND DoS Vulnerability (CVE-2017-3137) - Windows

Information

Severity

Severity

Medium

Family

Family

Denial of Service

CVSSv2 Base

CVSSv2 Base

5.0

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:L/Au:N/C:N/I:N/A:P

Solution Type

Solution Type

Vendor Patch

Created

Created

11 months ago

Modified

Modified

11 months ago

Summary

ISC BIND is prone to a denial of service (DoS) vulnerability.

Insight

Insight

Mistaken assumptions about the ordering of records in the answer section of a response containing CNAME or DNAME resource records could lead to a situation in which named would exit with an assertion failure when processing a response in which records occurred in an unusual order.

Affected Software

Affected Software

BIND 9.9.9-P6, 9.9.10b1 through 9.9.10rc1, 9.10.4-P6, 9.10.5b1 through 9.10.5rc1, 9.11.0-P3, 9.11.1b1 through 9.11.1rc1 and 9.9.9-S8.

Detection Method

Detection Method

Checks if a vulnerable version is present on the target host.

Solution

Solution

Update to version 9.9.9-P8, 9.9.10rc3, 9.10.4-P8, 9.10.5rc3, 9.11.0-P5, 9.11.1rc3, 9.9.9-S10 or later.

Common Vulnerabilities and Exposures (CVE)