QID 15151
Date Published: 2023-07-31
QID 15151: ISC BIND Denial of Service (DoS) Vulnerability (CVE-2014-8500)
ISC BIND (Berkley Internet Domain Name) is an implementation of DNS protocols.
Affected Versions:
9.0.x - 9.8.x, 9.9.0 - 9.9.6, and 9.10.0 - 9.10.1
QID Detection Logic:
This unauthenticated check detects vulnerable systems by fetching the version information from the BIND service.
All recursive resolvers are affected. Authoritative servers can be affected if an attacker can control a delegation traversed by the authoritative server in servicing the zone.
Solution
Customers are advised to upgrade latest release of ISC BIND.
Vendor References
- CVE-2014-8500 -
kb.isc.org/docs/aa-01216
CVEs related to QID 15151
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2014-8500 |
|