CVE-2010-3762

Publication date 5 October 2010

Last updated 24 July 2024


Ubuntu priority

ISC BIND before 9.7.2-P2, when DNSSEC validation is enabled, does not properly handle certain bad signatures if multiple trust anchors exist for a single zone, which allows remote attackers to cause a denial of service (daemon crash) via a DNS query.

Read the notes from the security team

Status

Package Ubuntu Release Status
bind9 11.04 natty
Not affected
10.10 maverick
Not affected
10.04 LTS lucid
Fixed 1:9.7.0.dfsg.P1-1ubuntu0.2
9.10 karmic Ignored end of life
9.04 jaunty Ignored end of life
8.04 LTS hardy
Fixed 1:9.4.2.dfsg.P2-2ubuntu0.7
6.06 LTS dapper Ignored end of life

Notes


mdeslaur

redhat released updates with change 2869 as fixing it. isc.org says this is a minor issue, setting to "low"