Vulnerabilities
Vulnerable Software
Isc:  >> Bind  >> 9.7.2  Security Vulnerabilities
ISC BIND before 9.7.2-P2, when DNSSEC validation is enabled, does not properly handle certain bad signatures if multiple trust anchors exist for a single zone, which allows remote attackers to cause a denial of service (daemon crash) via a DNS query.
CVSS Score
4.3
EPSS Score
0.275
Published
2010-10-05
ISC BIND 9.7.2 through 9.7.2-P1 uses an incorrect ACL to restrict the ability of Recursion Desired (RD) queries to access the cache, which allows remote attackers to obtain potentially sensitive information via a DNS query.
CVSS Score
5.0
EPSS Score
0.021
Published
2010-10-05


Contact Us

Shodan ® - All rights reserved