Race condition in the ns_client structure management in ISC BIND 9.9.x before 9.9.1-P2 allows remote attackers to cause a denial of service (memory consumption or process exit) via a large volume of TCP queries.
The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.
Link | Tags |
---|---|
http://www.slackware.com/security/viewer.php?l=slackware-security&y=2012&m=slackware-security.536004 | vendor advisory |
https://kb.isc.org/article/AA-00730 | vendor advisory |