cbcvebase.
CVE-2016-2088
published 2016-03-09

CVE-2016-2088: resolver.c in named in ISC BIND 9.10.x before 9.10.3-P4, when DNS cookies are enabled, allows remote attackers to cause a denial of service (INSIST assertion…

medium6.8CVSS 3.0
AVNACHPRNUINSCCNINAH
resolver.c in named in ISC BIND 9.10.x before 9.10.3-P4, when DNS cookies are enabled, allows remote attackers to cause a denial of service (INSIST assertion failure and daemon exit) via a malformed packet with more than one cookie option.

Affected

5 ranges
VendorProductVersion rangeFixed in
debianbind9
iscbind
iscbind
iscbind
iscbind