CVE-2007-2241: High severity ISC BIND vulnerability
Published May 2, 2007
·Updated
Unspecified vulnerability in query.c in ISC BIND 9.4.0, and 9.5.0a1 through 9.5.0a3, when recursion is enabled, allows remote attackers to cause a denial of service (daemon exit) via a sequence of queries processed by the queryaddsoa function.
Affected Software
2 affected components
ISC BIND=9.4.0
ISC BIND=9.5.0
Event History
May 2, 2007
CVE Published
10:19 AM
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2241?
CVE-2007-2241 has a high severity rating due to its potential to cause a denial of service.
2
How do I fix CVE-2007-2241?
To fix CVE-2007-2241, upgrade to ISC BIND version 9.5.0 or later, as the vulnerability is patched in subsequent releases.
3
What versions of ISC BIND are affected by CVE-2007-2241?
CVE-2007-2241 affects ISC BIND versions 9.4.0 and 9.5.0a1 through 9.5.0a3.
4
Can CVE-2007-2241 be exploited remotely?
Yes, CVE-2007-2241 can be exploited remotely by attackers via a sequence of specially crafted queries.
5
What impact does CVE-2007-2241 have on server performance?
CVE-2007-2241 can lead to server downtime as it causes the BIND daemon to exit unexpectedly when recursion is enabled.