Description
An attacker who is permitted to send zone data to a server via zone transfer can exploit this to intentionally trigger the assertion failure with a specially constructed zone, denying service to clients.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Upgrade to the patched release most closely related to your current version of BIND: BIND 9.16.4
Vendor Workaround
None
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-29466 | An attacker who is permitted to send zone data to a server via zone transfer can exploit this to intentionally trigger the assertion failure with a specially constructed zone, denying service to clients. |
Ubuntu USN |
USN-4399-1 | Bind vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: isc
Published:
Updated: 2024-09-16T23:36:09.070Z
Reserved: 2020-02-05T00:00:00.000Z
Link: CVE-2020-8618
No data.
Status : Modified
Published: 2020-06-17T22:15:12.977
Modified: 2024-11-21T05:39:08.120
Link: CVE-2020-8618
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN