DNS: ISC BIND DNSSEC Key Parsing Buffer Denial of Service

This signature detects attempts to exploit a known vulnerability against ISC BIND. Attackers can send crafted malicious data to cause denial of service condition to the target service.

Extended Description

buffer.c in named in ISC BIND 9.x before 9.9.7-P3 and 9.10.x before 9.10.2-P4 allows remote attackers to cause a denial of service (assertion failure and daemon exit) by creating a zone containing a malformed DNSSEC key and issuing a query for a name in that zone.

Affected Products

Isc bind

Short Name
DNS:EXPLOIT:BIND-KEYPARSE-DOS
Severity
Major
Recommended
True
Recommended Action
None
Category
DNS
Keywords
BIND Buffer CVE-2015-5722 DNSSEC Denial ISC Key Parsing Service bid:76605 of
Release Date
10/07/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3590
False Positive
Unknown
Vendors

Isc

Apple

CVSS Score

7.8

Found a potential security threat?