MGASA-2015-0298

Source
https://advisories.mageia.org/MGASA-2015-0298.html
Import Source
https://advisories.mageia.org/MGASA-2015-0298.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2015-0298
Related
Published
2015-07-31T22:46:26Z
Modified
2015-07-31T22:35:26Z
Summary
Updated bind package fixes security vulnerability
Details

An error in the handling of TKEY queries can be exploited by an attacker for use as a denial-of-service vector, as a constructed packet can use the defect to trigger a REQUIRE assertion failure, causing BIND to exit (CVE-2015-5477).

References
Credits

Affected packages

Mageia:5 / bind

Package

Name
bind
Purl
pkg:rpm/mageia/bind?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.10.2.P3-1.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:4 / bind

Package

Name
bind
Purl
pkg:rpm/mageia/bind?distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.9.7.P2-1.mga4

Ecosystem specific

{
    "section": "core"
}