cbcvebase.
CVE-2015-5477
published 2015-07-29

CVE-2015-5477: named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon…

high7.8CVSS 3.1
AVNACLAuNCNINAC
EXPLOIT
named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via TKEY queries.

Affected

9 ranges
VendorProductVersion rangeFixed in
appleos_x_server_v4.1.5
debianbind9< bind9 1:9.9.5.dfsg-11 (bookworm)bind9 1:9.9.5.dfsg-11 (bookworm)
iscbind<= 9.9.7
iscbind<= 9.10.2
iscbind9>= 0 < 1:9.9.5.dfsg-111:9.9.5.dfsg-11
iscbind9>= 0 < 1:9.9.5.dfsg-111:9.9.5.dfsg-11
iscbind9>= 0 < 1:9.9.5.dfsg-111:9.9.5.dfsg-11
iscbind9>= 0 < 1:9.9.5.dfsg-111:9.9.5.dfsg-11
iscbind9>= 0 < 1:9.9.5.dfsg-3ubuntu0.41:9.9.5.dfsg-3ubuntu0.4

CVSS provenance

nvd7.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
osv7.8HIGH
vulncheck7.8HIGH