Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Unspecified vulnerability in ISC BIND 9 9.8.0, 9.8.0-P1, 9.8.0-P2, and 9.8.1b1, when recursion is enabled and the Response Policy Zone (RPZ) contains DNAME or certain CNAME records, allows remote attackers to cause a denial of service (named daemon crash) via an unspecified query.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ISC BIND RPZ配置拒绝服务漏洞
Vulnerability Description
ISC BIND是美国Internet Systems Consortium(ISC)公司所维护的一套实现了DNS协议的开源软件。 ISC BIND在处理DNAME和CNAME记录时,RPZ功能中存在拒绝服务漏洞。远程攻击者可利用此漏洞终止named进程,使受影响应用程序崩溃,造成拒绝服务。如果服务器启用了递归并用包含某些类型记录的RPZ区域配置,则在查询时,BIND受影响版本中的错误可造成named进程退出。
CVSS Information
N/A
Vulnerability Type
N/A