ISC / Bind
182 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2015-8000 | bind: responses with a malformed class attribute can trigger an assertion failure in db.c | MEDIUM | 5.0 | Dec 16, 2015 |
| CVE-2015-5986 | Bind: fromwire_openpgpkey() incorrect boundary check Denial of Service | HIGH | 7.1 | Sep 5, 2015 |
| CVE-2015-5722 | bind: malformed DNSSEC key failed assertion denial of service | HIGH | 7.8 | Sep 5, 2015 |
| CVE-2015-5477 | bind: TKEY query handling flaw leading to denial of service | HIGH | 7.8 | Jul 29, 2015 |
| CVE-2015-4620 | bind: abort DoS caused by uninitialized value use in isselfsigned() | HIGH | 7.8 | Jul 8, 2015 |
| CVE-2015-1349 | bind: issue in trust anchor management can cause named to crash | MEDIUM | 5.4 | Feb 19, 2015 |
| CVE-2014-8680 | bind: flaws in GeoIP leading to a denial of service | MEDIUM | 5.4 | Dec 11, 2014 |
| CVE-2014-8500 | bind: delegation handling denial of service | HIGH | 7.8 | Dec 11, 2014 |
| CVE-2014-3859 | bind: assertion failure during EDNS option processing | MEDIUM | 5.0 | Jun 13, 2014 |
| CVE-2014-3214 | bind: assertion failure when using prefetch | MEDIUM | 5.0 | May 9, 2014 |
| CVE-2014-0591 | bind: named crash when handling malformed NSEC3-signed zones | LOW | 2.6 | Jan 14, 2014 |
| CVE-2013-6230 | bind: localnets ACL bypass caused by WinSock API bug | MEDIUM | 6.8 | Nov 8, 2013 |
| CVE-2013-4854 | bind: named crash with an assertion failure on parsing malformed rdata | HIGH | 7.8 | Jul 26, 2013 |
| CVE-2013-3919 | bind: Querying a recursive resolver for a malformed zone causes named to crash | HIGH | 7.8 | Jun 6, 2013 |
| CVE-2013-2266 | bind: libdns regular expressions excessive resource consumption DoS | HIGH | 7.8 | Mar 28, 2013 |
| CVE-2012-5689 | bind: denial of service when processing queries and with both DNS64 and RPZ enabled | HIGH | 7.1 | Jan 25, 2013 |
| CVE-2012-5688 | bind: DoS on servers using DNS64 | HIGH | 7.8 | Dec 6, 2012 |
| CVE-2012-5166 | bind: Specially crafted DNS data can cause a lockup in named | HIGH | 7.8 | Oct 10, 2012 |
| CVE-2012-4244 | bind: specially crafted resource record causes named to exit | HIGH | 7.8 | Sep 14, 2012 |
| CVE-2012-3868 | bind: high TCP query load can trigger memory leak | MEDIUM | 4.3 | Jul 25, 2012 |
| CVE-2012-3817 | bind: heavy DNSSEC validation load can cause assertion failure | HIGH | 7.8 | Jul 25, 2012 |
| CVE-2012-1667 | bind: handling of zero length rdata can cause named to terminate unexpectedly | HIGH | 8.5 | Jun 5, 2012 |
| CVE-2012-1033 | bind: deleted domain name resolving flaw | MEDIUM | 5.0 | Feb 8, 2012 |
| CVE-2011-4313 | bind: Remote denial of service against recursive servers via logging negative cache entry | MEDIUM | 5.0 | Nov 29, 2011 |
| CVE-2011-2465 | bind: Remote Crash with Certain RPZ Configurations | LOW | 2.6 | Jul 8, 2011 |
Showing 101 to 125 of 182 CVEs