Files
CVEs-PoC/2015/CVE-2015-1349.md
T
2025-09-29 21:09:30 +02:00

19 lines
888 B
Markdown

### [CVE-2015-1349](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1349)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brightgreen)
### Description
named in ISC BIND 9.7.0 through 9.9.6 before 9.9.6-P2 and 9.10.x before 9.10.1-P2, when DNSSEC validation and the managed-keys feature are enabled, allows remote attackers to cause a denial of service (assertion failure and daemon exit, or daemon crash) by triggering an incorrect trust-anchor management scenario in which no key is ready for use.
### POC
#### Reference
- https://kb.isc.org/article/AA-01235
- https://kc.mcafee.com/corporate/index?page=content&id=SB10116
#### Github
- https://github.com/ARPSyndicate/cve-scores