CVE-2016-9131

Name
CVE-2016-9131
Description
named in ISC BIND 9.x before 9.9.9-P5, 9.10.x before 9.10.4-P5, and 9.11.x before 9.11.0-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a malformed response to an RTYPE ANY query.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Third Party Advisory http://rhn.redhat.com/errata/RHSA-2017-0062.html
Third Party Advisory http://www.debian.org/security/2017/dsa-3758
Third Party Advisory http://www.securityfocus.com/bid/95386
Third Party Advisory http://www.securitytracker.com/id/1037582
Third Party Advisory https://access.redhat.com/errata/RHSA-2017:1583
Patch https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05381687
Patch https://kb.isc.org/article/AA-01439/74/CVE-2016-9131
Third Party Advisory https://security.gentoo.org/glsa/201708-01
Third Party Advisory https://security.netapp.com/advisory/ntap-20180926-0005/

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:isc:bind:*:*:*:*:*:*:*:* bind >= 9.0 <= 9.9.8
cpe:2.3:a:isc:bind:*:*:*:*:*:*:*:* bind >= 9.10.0 <= 9.10.3
cpe:2.3:a:isc:bind:9.9.9:-:*:*:*:*:*:* bind == None == 9.9.9
cpe:2.3:a:isc:bind:9.10.4:b2:*:*:*:*:*:* bind == None == 9.10.4
cpe:2.3:a:isc:bind:9.11.0:a1:*:*:*:*:*:* bind == None == 9.11.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
bind edge-main 9.10.4_p5-r0 None fixed
bind 3.22-main 9.10.4_p5-r0 None fixed
bind 3.21-main 9.10.4_p5-r0 None fixed
bind 3.20-main 9.10.4_p5-r0 None fixed
bind 3.19-main 9.10.4_p5-r0 None fixed
bind 3.18-main 9.10.4_p5-r0 None fixed
bind 3.17-main 9.10.4_p5-r0 None fixed
bind 3.12-main 9.10.4_p5-r0 None fixed
bind 3.11-main 9.10.4_p5-r0 None fixed
bind 3.10-main 9.10.4_p5-r0 None fixed