Intrusion Prevention

ISC.BIND.DNS.Resource.Records.Handling.Remote.DoS

Description

This indicates an attack attempt to exploit a Denial of Service vulnerability in ISC BIND.
The vulnerability is due to an error in the application when handling overly long RDATA. It allows remote attackers to cause a denial of service via a query for a long resource record.

Affected Products

ISC BIND 9.x before 9.7.6-P3
ISC BIND 9.8.x before 9.8.3-P3
ISC BIND 9.9.x before 9.9.1-P3
ISC BIND 9.4-ESV
ISC BIND 9.6-ESV before 9.6-ESV-R7-P3

Impact

Denial of Service: Remote attackers can crash vulnerable systems.

Recommended Actions

Apply the most recent upgrade or patch from the vendor.
http://www.isc.org/products/BIND/

CVE References

CVE-2012-4244