RULE(RULE ID:105230)

Rule General Information
Release Date: 2018-03-26
Rule Name: ISC BIND Referral CNAME and DNAME Assertion Failure Denial of Service Vulnerability -1 (CVE-2017-3137)
Severity:
CVE ID:
Rule Protection Details
Description: A denial of service vulnerability has been found in ISC BIND9. The vulnerability is caused by improper handling of responses containing CNAME and DNAME records after receiving a referral.
Impact: An attacker can launch a denial of service attack by exploiting the vulnerability successfully.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: https://kb.isc.org/article/AA-01466
Solutions
Apply the patch 9.9.9-P8/9.10.4-P8/9.11.0-P5 to solve the problem.