CVE Database
/

CVE-2014-0591

Back to search

CVE-2014-0591

Published: Jan 14, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

The query_findclosestnsec3 function in query.c in named in ISC BIND 9.6, 9.7, and 9.8 before 9.8.6-P2 and 9.9 before 9.9.4-P2, and 9.6-ESV before 9.6-ESV-R10-P2, allows remote attackers to cause a denial of service (INSIST assertion failure and daemon exit) via a crafted DNS query to an authoritative nameserver that uses the NSEC3 signing feature.

VendorProductVersions

n/a

n/a

affected
n/a

References

1029589
vdb-entry
x_refsource_SECTRACK
RHSA-2014:0043
vendor-advisory
x_refsource_REDHAT
DSA-3023
vendor-advisory
x_refsource_DEBIAN
MDVSA-2014:002
vendor-advisory
x_refsource_MANDRIVA
APPLE-SA-2014-10-16-3
vendor-advisory
x_refsource_APPLE
56574
third-party-advisory
x_refsource_SECUNIA
openSUSE-SU-2014:0199
vendor-advisory
x_refsource_SUSE
56522
third-party-advisory
x_refsource_SECUNIA
FEDORA-2014-0858
vendor-advisory
x_refsource_FEDORA
56442
third-party-advisory
x_refsource_SECUNIA
SSA:2014-028-01
vendor-advisory
x_refsource_SLACKWARE
61199
third-party-advisory
x_refsource_SECUNIA
SUSE-SU-2015:0480
vendor-advisory
x_refsource_SUSE
HPSBUX02961
vendor-advisory
x_refsource_HP
56427
third-party-advisory
x_refsource_SECUNIA
56871
third-party-advisory
x_refsource_SECUNIA
SSA:2014-175-01
vendor-advisory
x_refsource_SLACKWARE
openSUSE-SU-2014:0202
vendor-advisory
x_refsource_SUSE
56425
third-party-advisory
x_refsource_SECUNIA
56493
third-party-advisory
x_refsource_SECUNIA
FEDORA-2014-0811
vendor-advisory
x_refsource_FEDORA
FreeBSD-SA-14:04
vendor-advisory
x_refsource_FREEBSD
SSRT101420
vendor-advisory
x_refsource_HP
101973
vdb-entry
x_refsource_OSVDB
61343
third-party-advisory
x_refsource_SECUNIA
61117
third-party-advisory
x_refsource_SECUNIA
64801
vdb-entry
x_refsource_BID
USN-2081-1
vendor-advisory
x_refsource_UBUNTU

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now