CVE-2014-8500

Publication date 9 December 2014

Last updated 24 July 2024


Ubuntu priority

ISC BIND 9.0.x through 9.8.x, 9.9.0 through 9.9.6, and 9.10.0 through 9.10.1 does not limit delegation chaining, which allows remote attackers to cause a denial of service (memory consumption and named crash) via a large or infinite number of referrals.

Status

Package Ubuntu Release Status
bind9 14.10 utopic
Fixed 1:9.9.5.dfsg-4.3ubuntu0.1
14.04 LTS trusty
Fixed 1:9.9.5.dfsg-3ubuntu0.1
12.04 LTS precise
Fixed 1:9.8.1.dfsg.P1-4ubuntu0.9
10.04 LTS lucid
Fixed 1:9.7.0.dfsg.P1-1ubuntu0.12

References

Related Ubuntu Security Notices (USN)

Other references