7.5
CVSSv3

CVE-2019-6476

Published: 17/10/2019 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

An error in QNAME minimization code can cause bind prior to 9.14.7 and 9.15.5 to exit with an assertion failure.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

isc bind

Vendor Advisories

An error in QNAME minimization code can cause bind before 9147 and 9155 to exit with an assertion failure ...

Mailing Lists

Today (2019-10-16) ISC announced two vulnerabilities in our BIND 9 software CVE-2019-6475, a DNSSEC validation bypass for mirror zones CVE-2019-6476, a flaw in QNAME minimization that can lead to an assertion failure These issues affect all prior BIND 914 releases and all prior BIND 915 releases Our full CVE text ca ...