Denial of Service Vulnerability in BIND DNS Servers by ISC
CVE-2016-1286

8.6HIGH

Key Information:

Vendor

Isc

Status
Vendor
CVE Published:
9 March 2016

What is CVE-2016-1286?

A vulnerability in ISC's BIND versions before 9.9.8-P4 and 9.10.x before 9.10.3-P4 can be exploited by remote attackers to trigger a denial of service. This issue arises from improper handling of crafted signature records for DNAME records, resulting in assertion failures and ultimately leading to the BIND daemon exiting unexpectedly. This impacts the reliability and availability of DNS services, potentially disrupting connections for users relying on the affected servers.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

EPSS Score

60% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
8.6
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.