CVE-2015-4620: High severity isc bind 9 vulnerability
name.c in named in ISC BIND 9.7.x through 9.9.x before 9.9.7-P1 and 9.10.x before 9.10.2-P2, when configured as a recursive resolver with DNSSEC validation, allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) by constructing crafted zone data and then making a query for a name in that zone.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4620?
The severity of CVE-2015-4620 is considered critical as it can lead to a denial of service.
How do I fix CVE-2015-4620?
To fix CVE-2015-4620, you should update ISC BIND to versions 9.9.7-P1, 9.10.2-P2, or later.
What products are affected by CVE-2015-4620?
CVE-2015-4620 affects ISC BIND versions 9.7.x through 9.9.x before 9.9.7-P1 and 9.10.x before 9.10.2-P2.
What type of attack is related to CVE-2015-4620?
CVE-2015-4620 allows remote attackers to construct crafted zone data that causes a REQUIRE assertion failure.
Is there a workaround for CVE-2015-4620?
A workaround for CVE-2015-4620 involves disabling DNSSEC validation, though this is not recommended as a permanent solution.