CVE-2010-3762
Publication date 5 October 2010
Last updated 24 July 2024
Ubuntu priority
ISC BIND before 9.7.2-P2, when DNSSEC validation is enabled, does not properly handle certain bad signatures if multiple trust anchors exist for a single zone, which allows remote attackers to cause a denial of service (daemon crash) via a DNS query.
Notes
mdeslaur
redhat released updates with change 2869 as fixing it. isc.org says this is a minor issue, setting to "low"
References
Related Ubuntu Security Notices (USN)
- USN-1139-1
- Bind vulnerabilities
- 30 May 2011