Reachable Assertion in ISC BIND - CVE-2022-0635
Published: March 17, 2022
ISC BIND
ISC
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a reachable assertion when processing DNS requests. A remote attacker can send a repeated patterns of specific queries to servers with DNSSEC-Validated Cache feature (synth-from-dnssec) enabled and cause an INSIST failure in query.c:query_dname which causes named to terminate unexpectedly.