The GeoIP functionality in ISC BIND 9.10.0 through 9.10.1 allows remote attackers to cause a denial of service (assertion failure and named exit) via vectors related to (1) the lack of GeoIP databases for both IPv4 and IPv6, or (2) IPv6 support with certain options.

Published : 2014-12-11 02:59 Updated : 2019-07-30 18:15

CVSS Score More info
Score 5.4 / 10
Vendor Product Version URI
Isc Bind 9.10.0 cpe:/a:isc:bind:9.10.0
Isc Bind 9.10.1 cpe:/a:isc:bind:9.10.1
  1. Isc (1) Search CVE
    1. Bind (2) Search CVE
      1. 9.10.0
      2. 9.10.1


ID Name Description Links
CWE-20 Improper Input Validation The product does not validate or incorrectly validates input that can affect the control flow or data flow of a program. CVE
CWE-284 Improper Access Control The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor. CVE

History of changes

Date Event
2019-07-30 18:15
2014-12-11 02:59