CVE-2014-8500: High severity isc bind 9 vulnerability
ISC BIND 9.0.x through 9.8.x, 9.9.0 through 9.9.6, and 9.10.0 through 9.10.1 does not limit delegation chaining, which allows remote attackers to cause a denial of service (memory consumption and named crash) via a large or infinite number of referrals.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-8500?
CVE-2014-8500 is considered a high severity vulnerability due to its potential to cause denial of service through memory exhaustion and crashes.
How do I fix CVE-2014-8500?
To fix CVE-2014-8500, you should upgrade ISC BIND to version 9.10.2-P2 or later, or apply any patches provided by your distribution.
What systems are affected by CVE-2014-8500?
CVE-2014-8500 affects ISC BIND versions 9.0.x through 9.10.1, including various subversions within these ranges.
What is the impact of exploiting CVE-2014-8500?
Exploiting CVE-2014-8500 can lead to significant memory consumption, resulting in a denial of service by causing the BIND server to crash.
How can I check if my BIND version is vulnerable to CVE-2014-8500?
You can check if your BIND version is vulnerable to CVE-2014-8500 by running the command 'named -v' in the terminal and comparing it with the affected versions.