SynopsisThe remote name server is affected by an assertion failure vulnerability.
DescriptionAccording to its self-reported version, the instance of ISC BIND 9 running on the remote name server is 9.10.5-S1 to 9.10.5-S4, 9.10.6-S1 or 9.10.6-S2. It is, therefore, affected by an assertion failure vulnerability which exists in badcache.c due to selecting a SERVFAIL rcode instead of a FORMERR rcode. An unauthenticated attacker can exploit this to cause an assertion failure when the request doesn't contain all the expected information.
SolutionUpgrade to ISC BIND version 9.10.6-S3 or later.