CVE-2011-1907

MEDIUM

Description

ISC BIND 9.8.x before 9.8.0-P1, when Response Policy Zones (RPZ) RRset replacement is enabled, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via an RRSIG query.

References

http://secunia.com/advisories/44416

http://www.securityfocus.com/archive/1/517900/100/0/threaded

http://www.securityfocus.com/bid/47734

http://www.securitytracker.com/id?1025503

http://www.vupen.com/english/advisories/2011/1183

https://exchange.xforce.ibmcloud.com/vulnerabilities/67297

https://www.isc.org/CVE-2011-1907

Details

Source: MITRE

Published: 2011-05-09

Updated: 2018-10-09

Type: CWE-399

Risk Information

CVSS v2.0

Base Score: 5

Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Impact Score: 2.9

Exploitability Score: 10

Severity: MEDIUM