Versions affected: BIND 9.18.0 When a vulnerable version of named receives a series of specific queries, the named process will eventually terminate due to a failed assertion check.
Solution:
Workaround:
The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.
Link | Tags |
---|---|
https://kb.isc.org/v1/docs/cve-2022-0635 | mitigation vendor advisory |
https://security.netapp.com/advisory/ntap-20220408-0001/ | third party advisory |