First published: Wed Oct 09 2019(Updated: )
An error in the EDNS Client Subnet (ECS) feature for recursive resolvers can cause BIND to exit with an assertion failure when processing a response that has malformed RRSIGs. Versions affected: BIND 9.10.5-S1 -> 9.11.6-S1 of BIND 9 Supported Preview Edition.
Credit: security-officer@isc.org
Affected Software | Affected Version | How to fix |
---|---|---|
ISC BIND | =9.10.5-s1 | |
ISC BIND | =9.11.6-s1 |
Upgrade to the patched release most closely related to your current version of BIND: BIND Supported Preview Edition is a special feature preview branch of BIND provided to eligible ISC support customers. >= BIND 9.11.7-S1
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-6469 is a vulnerability in the EDNS Client Subnet (ECS) feature for recursive resolvers in BIND 9.
CVE-2019-6469 has a severity rating of high (7.5).
BIND 9.10.5-S1 through 9.11.6-S1 of BIND 9 Supported Preview Edition are affected by CVE-2019-6469.
CVE-2019-6469 can cause BIND to exit with an assertion failure when processing a response that has malformed RRSIGs.
You can find more information about CVE-2019-6469 at the following references: [Link 1](https://kb.isc.org/docs/cve-2019-6469) and [Link 2](https://support.f5.com/csp/article/K39751401?utm_source=f5support&utm_medium=RSS).