This script is Copyright (C) 2015 Tenable Network Security, Inc.
The remote Solaris system is missing a security patch for third-party
The remote Solaris system is missing necessary patches to address
security updates :
- ISC BIND 9.4.x, 9.5.x, 9.6.x, and 9.7.x before 9.7.6-P2;
9.8.x before 9.8.3-P2; 9.9.x before 9.9.1-P2; and
9.6-ESV before 9.6-ESV-R7-P2, when DNSSEC validation is
enabled, does not properly initialize the failing-query
cache, which allows remote attackers to cause a denial
of service (assertion failure and daemon exit) by
sending many queries. (CVE-2012-3817)
See also :
Upgrade to Solaris 11/11 SRU 10.5.
Risk factor :
High / CVSS Base Score : 7.8