RULE(RULE ID:105216)

Rule General Information
Release Date: 2015-02-06
Rule Name: PROTOCOL-DNS ISC BIND EDNS Option Processing Denial of Service Vulnerability (CVE-2014-3859)
Severity:
CVE ID:
Rule Protection Details
Description: libdns in ISC BIND 9.10.0 before P2 does not properly handle EDNS options, which allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via a crafted packet.
Impact: An attacker can launch a denial of service attack by exploiting the vulnerability successfully.
Affected OS: Windows, Linux
Reference: SecurityFocusBID:68193
SecurityTrackerID:1030414
Solutions
More advisories have been published on the website, please visit for more suggestions:
https://kb.isc.org/article/AA-01166/