libdns in ISC BIND 9.10.0 before P2 does not properly handle EDNS options, which allows remote malicious users to cause a denial of service (REQUIRE assertion failure and daemon exit) via a crafted packet, as demonstrated by an attack against named, dig, or delv.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
isc bind 9.10.0 |