DNS: ISC BIND CNAME RRSIG Query With RPZ Denial of Service

This signature detects attempts to exploit a known vulnerability against ISC BIND. A successful attack can result in a denial-of-service condition.

Extended Description

ISC BIND is prone to multiple remote denial-of-service vulnerabilities under certain response policy zone (RPZ) configurations. An attacker can exploit these issues to cause the application process to crash, denying service to legitimate users.

Affected Products

Suse suse_linux_enterprise_server

References

BugTraq: 48565

CVE: CVE-2011-2465

Short Name
DNS:ISC-BIND-RRSIG-DOS
Severity
Minor
Recommended
False
Recommended Action
None
Category
DNS
Keywords
BIND CNAME CVE-2011-2465 Denial ISC Query RPZ RRSIG Service With bid:48565 of
Release Date
07/29/2011
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3606
False Positive
Unknown
Vendors

Isc

Red_hat

Suse

CVSS Score

2.6

Found a potential security threat?