First published: Sat Sep 05 2015(Updated: )
buffer.c in named in ISC BIND 9.x before 9.9.7-P3 and 9.10.x before 9.10.2-P4 allows remote attackers to cause a denial of service (assertion failure and daemon exit) by creating a zone containing a malformed DNSSEC key and issuing a query for a name in that zone.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
BIND 9 | <=9.9.7 | |
BIND 9 | <=9.10.2 | |
Apple Mac OS X Server | =5.0.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5722 has a high severity rating as it allows remote attackers to cause a denial of service.
To fix CVE-2015-5722, upgrade ISC BIND to version 9.9.7-P3 or 9.10.2-P4 or later.
CVE-2015-5722 affects ISC BIND versions 9.x before 9.9.7-P3 and 9.10.x before 9.10.2-P4, as well as Apple Mac OS X Server 5.0.15.
CVE-2015-5722 is associated with a denial of service attack through crafted DNS queries.
Yes, if your DNS server is running the affected versions of ISC BIND or Apple Mac OS X Server, it is vulnerable to CVE-2015-5722.