Lucene search

K
osvGoogleOSV:DSA-3162-1
HistoryFeb 18, 2015 - 12:00 a.m.

bind9 - security update

2015-02-1800:00:00
Google
osv.dev
12

EPSS

0.069

Percentile

94.0%

Jan-Piet Mens discovered that the BIND DNS server would crash when
processing an invalid DNSSEC key rollover, either due to an error on
the zone operator’s part, or due to interference with network traffic
by an attacker. This issue affects configurations with the directives
“dnssec-validation auto;” (as enabled in the Debian default
configuration) or “dnssec-lookaside auto;”.

For the stable distribution (wheezy), this problem has been fixed in
version 1:9.8.4.dfsg.P1-6+nmu2+deb7u4.

We recommend that you upgrade your bind9 packages.