CVE-2006-4095

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/09/2006
Last modified:
03/04/2025

Description

BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via certain SIG queries, which cause an assertion failure when multiple RRsets are returned.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:isc:bind:*:*:*:*:*:*:*:* 9.2.6 (including)
cpe:2.3:a:isc:bind:*:*:*:*:*:*:*:* 9.3.0 (including) 9.3.2 (including)
cpe:2.3:o:canonical:ubuntu_linux:5.04:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:5.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* 10.3.9 (excluding)
cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* 10.4.0 (including) 10.4.9 (excluding)
cpe:2.3:o:apple:mac_os_x_server:*:*:*:*:*:*:*:* 10.3.9 (excluding)
cpe:2.3:o:apple:mac_os_x_server:*:*:*:*:*:*:*:* 10.4.0 (including) 10.4.9 (excluding)


References to Advisories, Solutions, and Tools