CVE Database
/

CVE-2013-4854

Back to search

CVE-2013-4854

Published: Jul 26, 2013

Modified: Aug 6, 2024

PUBLISHED

Description

The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.4-S1b1, allows remote attackers to cause a denial of service (assertion failure and named daemon exit) via a query with a malformed RDATA section that is not properly handled during construction of a log message, as exploited in the wild in July 2013.

VendorProductVersions

n/a

n/a

affected
n/a

References

FEDORA-2013-13863
vendor-advisory
x_refsource_FEDORA
HPSBUX02926
vendor-advisory
x_refsource_HP
APPLE-SA-2014-10-16-3
vendor-advisory
x_refsource_APPLE
54134
third-party-advisory
x_refsource_SECUNIA
MDVSA-2013:202
vendor-advisory
x_refsource_MANDRIVA
54185
third-party-advisory
x_refsource_SECUNIA
FreeBSD-SA-13:07
vendor-advisory
x_refsource_FREEBSD
oval:org.mitre.oval:def:19561
vdb-entry
signature
x_refsource_OVAL
FEDORA-2013-13831
vendor-advisory
x_refsource_FEDORA
54207
third-party-advisory
x_refsource_SECUNIA
openSUSE-SU-2013:1354
vendor-advisory
x_refsource_SUSE
isc-bind-cve20134854-dos(86004)
vdb-entry
x_refsource_XF
RHSA-2013:1114
vendor-advisory
x_refsource_REDHAT
61479
vdb-entry
x_refsource_BID
54323
third-party-advisory
x_refsource_SECUNIA
SUSE-SU-2013:1310
vendor-advisory
x_refsource_SUSE
54211
third-party-advisory
x_refsource_SECUNIA
USN-1910-1
vendor-advisory
x_refsource_UBUNTU
DSA-2728
vendor-advisory
x_refsource_DEBIAN
1028838
vdb-entry
x_refsource_SECTRACK
RHSA-2013:1115
vendor-advisory
x_refsource_REDHAT
SSRT101281
vendor-advisory
x_refsource_HP
54432
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now