QID 15126
Date Published: 2021-05-10
QID 15126: ISC BIND Assertion Failure Vulnerability
ISC BIND (Berkley Internet Domain Name) is an implementation of DNS protocols.
Affected software:
BIND 9.0.0 -> 9.11.29
BIND 9.12.0 -> 9.16.13
BIND 9.9.3-S1 -> 9.11.29-S1
BIND 9.16.8-S1 -> 9.16.13-S1
BIND 9.17.0 -> 9.17.11
Patched Versions:
BIND 9.11.31
BIND 9.16.15
BIND 9.17.12
BIND 9.11.31-S1
BIND 9.16.15-S1
QID Detection Logic:
This unauthenticated check detects vulnerable systems by fetching the version information from the BIND service.
Successfully exploitation could affects integrity, availability, confidentiality
Solution
Customers are advised to upgrade to the patched version 9.11.31, 9.16.15, 9.17.12, 9.11.31-S1, 9.16.15-S1 or latest release of ISC BIND.
Vendor References
- BIND CVE-2021-25215 -
kb.isc.org/docs/cve-2021-25215
CVEs related to QID 15126
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| BIND CVE-2021-25215 |
|