CVE-2006-0987: Medium severity ISC BIND vulnerability
The default configuration of ISC BIND before 9.4.1-P1, when configured as a caching name server, allows recursive queries and provides additional delegation information to arbitrary IP addresses, which allows remote attackers to cause a denial of service (traffic amplification) via DNS queries with spoofed source IP addresses.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0987?
CVE-2006-0987 is considered a high severity vulnerability that can lead to denial of service and traffic amplification attacks.
How do I fix CVE-2006-0987?
To fix CVE-2006-0987, upgrade ISC BIND to version 9.4.1-P1 or later and ensure that recursive queries are disabled for unauthorized IP addresses.
What types of systems are affected by CVE-2006-0987?
CVE-2006-0987 primarily affects ISC BIND versions prior to 9.4.1-P1 configured as caching name servers.
What attack vectors does CVE-2006-0987 expose?
CVE-2006-0987 exposes attack vectors that allow remote attackers to exploit the DNS server for traffic amplification through recursive queries.
Is CVE-2006-0987 commonly exploited?
While CVE-2006-0987 has been historically significant, its common exploitation largely depends on the specific configuration and deployment of affected systems.