Weer een issue met bind in de rol als recursive resolver :
====================================
https://kb.isc.org/article/AA-00967
04 Jun 2013
Program Impacted: BIND 9
Versions affected: BIND 9.6-ESV-R9, 9.8.5, and 9.9.3 are affected
Versions 9.6.0 through 9.6-ESV-R8, 9.8.0 through 9.8.4-P2, and 9.9.0 through 9.9.2-P2 ARE NOT affected.
Severity: High
Exploitable: Remotely
Description:
A bug has been discovered in the most recent releases of BIND 9 which has the potential for deliberate exploitation as a denial-of-service attack. By sending a recursive resolver a query for a record in a specially malformed zone, an attacker can cause BIND 9 to exit with a fatal "RUNTIME_CHECK" error in resolver.c

Likes:


Quote