← Vulnerability feed

Vulnerability record · CVE-2011-1910 · published 31 May 2011

CVE-2011-1910: Isc bind vulnerability

Isc · Bind

Off-by-one error in named in ISC BIND 9.x before 9.7.3-P1, 9.8.x before 9.8.0-P2, 9.4-ESV before 9.4-ESV-R4-P1, and 9.6-ESV before 9.6-ESV-R4-P1 allows remote DNS servers to cause a denial of service (assertion failure and daemon exit) via a negative response containing large RRSIG RRsets.

5.0 CVSS 2.0 Medium EPSS 25% · top 2.2% CWE-189 · CWE-189
5.0CVSS 2.0 base score
25%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
52References
16 Jun 2026Last modified by NVD

Description

Off-by-one error in named in ISC BIND 9.x before 9.7.3-P1, 9.8.x before 9.8.0-P2, 9.4-ESV before 9.4-ESV-R4-P1, and 9.6-ESV before 9.6-ESV-R4-P1 allows remote DNS servers to cause a denial of service (assertion failure and daemon exit) via a negative response containing large RRSIG RRsets.

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061082.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061401.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061405.html
http://marc.info/?l=bugtraq&m=142180687100892&w=2
http://osvdb.org/72540
http://secunia.com/advisories/44677
http://secunia.com/advisories/44719 Vendor Advisory
http://secunia.com/advisories/44741
http://secunia.com/advisories/44744
http://secunia.com/advisories/44758
http://secunia.com/advisories/44762
http://secunia.com/advisories/44783
http://secunia.com/advisories/44929
http://security.freebsd.org/advisories/FreeBSD-SA-11:02.bind.asc
http://slackware.com/security/viewer.php?l=slackware-security&y=2011&m=slackware-security.685026
http://support.apple.com/kb/HT5002
http://www.debian.org/security/2011/dsa-2244
http://www.kb.cert.org/vuls/id/795694 US Government Resource
http://www.mandriva.com/security/advisories?name=MDVSA-2011:104
http://www.redhat.com/support/errata/RHSA-2011-0845.html
http://www.securityfocus.com/bid/48007
http://www.securitytracker.com/id?1025572
https://bugzilla.redhat.com/show_bug.cgi?id=708301
https://hermes.opensuse.org/messages/8699912
https://www.isc.org/software/bind/advisories/cve-2011-1910 Vendor Advisory
http://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061082.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061401.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/061405.html
http://marc.info/?l=bugtraq&m=142180687100892&w=2
http://osvdb.org/72540
http://secunia.com/advisories/44677
http://secunia.com/advisories/44719 Vendor Advisory
http://secunia.com/advisories/44741
http://secunia.com/advisories/44744
http://secunia.com/advisories/44758
http://secunia.com/advisories/44762
http://secunia.com/advisories/44783
http://secunia.com/advisories/44929

Track CVE-2011-1910 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

Source: NIST National Vulnerability Database (record CVE-2011-1910), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.