FreeBSD Security Advisory – BIND Denial Of Service

FreeBSD Security Advisory – BIND servers which are configured to perform DNSSEC validation and which are using managed keys (which occurs implicitly when using “dnssec-validation auto;” or “dnssec-lookaside auto;”) may exhibit unpredictable behavior due to the use of an improperly initialized variable. A remote attacker can trigger a crash of a name server that is configured to use managed keys under specific and limited circumstances. However, the complexity of the attack is very high unless the attacker has a specific network relationship to the BIND server which is targeted.

Leave a Reply