CVE-2021-25215 log

Source
Severity High
Remote Yes
Type Denial of service
Description
DNAME records, described in RFC 6672, provide a way to redirect a subtree of the domain name tree in the DNS. A flaw in the way "named" processes these records may trigger an attempt to add the same RRset to the ANSWER section more than once.
In BIND before version 9.16.14, when a vulnerable version of "named" receives a query for a record triggering the flaw described above, the "named" process will terminate due to a failed assertion check.
Group Package Affected Fixed Severity Status Ticket
AVG-1890 bind 9.16.13-1 9.16.15-1 High Fixed
Date Advisory Group Package Severity Type
29 Apr 2021 ASA-202104-10 AVG-1890 bind High multiple issues
References
https://kb.isc.org/docs/cve-2021-25215
https://downloads.isc.org/isc/bind9/9.16.15/patches/CVE-2021-25215.patch