{"id":"MGASA-2014-0524","summary":"Updated bind packages fix CVE-2014-8500","details":"Updated bind packages fix security vulnerability:\n\nBy making use of maliciously-constructed zones or a rogue server, an attacker\ncan exploit an oversight in the code BIND 9 uses to follow delegations in the\nDomain Name Service, causing BIND to issue unlimited queries in an attempt to\nfollow the delegation.  This can lead to resource exhaustion and denial of\nservice (up to and including termination of the named server process)\n(CVE-2014-8500).\n","modified":"2026-04-16T06:23:05.909241061Z","published":"2014-12-10T20:09:57Z","upstream":["CVE-2014-8500"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2014-0524.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=14764"},{"type":"WEB","url":"https://kb.isc.org/article/AA-01216"},{"type":"WEB","url":"https://kb.isc.org/article/AA-01224"}],"affected":[{"package":{"name":"bind","ecosystem":"Mageia:4","purl":"pkg:rpm/mageia/bind?arch=source&distro=mageia-4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.9.6.P1-1.mga4"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2014-0524.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}