CVE-2016-9131
named in ISC BIND 9.x before 9.9.9-P5, 9.10.x before 9.10.4-P5, and 9.11.x before 9.11.0-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a malformed response to an RTYPE ANY query.
- Affected products
- Alt Linux, Bind Server, Centos, Ibm Aix, Isc Bind 9.10.X, Isc Bind 9.11.X, Isc Bind 9.X, Red Hat
- Isc Bind
- ≤ 9.9.8, 9.10.3, 9.9.9, 9.10.4, 9.11.0
- Fix
- Available
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 40.6% (99th percentile)
- Weakness
- CWE-20
- NVD status
- Modified
- Published
- 2017-01-12
CVE-2016-9131 at NVD
1 known exploit for CVE-2016-9131
Proof-of-concept code and exploit modules indexed by Sploitus