An error in zone database reference counting can lead to an assertion failure if a server which is running an affected version of BIND attempts several transfers of a slave zone in quick succession. This defect could be deliberately exercised by an attacker who is permitted to cause a vulnerable server to initiate zone transfers (for example: by sending valid NOTIFY messages), causing the named process to exit after failing the assertion test. Affects BIND 9.12.0 and 9.12.1.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: isc
Published: 2019-01-16T20:00:00
Updated: 2024-08-05T05:40:51.229Z
Reserved: 2018-01-17T00:00:00
Link: CVE-2018-5736
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-01-16T20:29:00.830
Modified: 2024-11-21T04:09:16.990
Link: CVE-2018-5736
Redhat