CVE-2015-8704: Input Validation
apl42.c in ISC BIND 9.x before 9.9.8-P3, 9.9.x, and 9.10.x before 9.10.3-P3 allows remote authenticated users to cause a denial of service (INSIST assertion failure and daemon exit) via a malformed Address Prefix List (APL) record.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-8704?
CVE-2015-8704 is classified as a high severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2015-8704?
To fix CVE-2015-8704, upgrade to ISC BIND version 9.9.8-P3 or later, or 9.10.3-P3 or later.
What types of systems are affected by CVE-2015-8704?
CVE-2015-8704 affects ISC BIND versions 9.x before 9.9.8-P3, 9.9.x, and 9.10.x before 9.10.3-P3.
What attack vector is used in CVE-2015-8704?
CVE-2015-8704 can be exploited by remote authenticated users through a malformed Address Prefix List (APL) record.
What impact does CVE-2015-8704 have on systems?
CVE-2015-8704 can lead to a denial of service due to INSIST assertion failure, resulting in the daemon exiting.