CVE-2015-8704: ISC BIND

Medium severity, CVSS 6.5. EPSS: 20.3% chance of exploitation in the next 30 days.

apl_42.c in ISC BIND 9.x before 9.9.8-P3, 9.9.x, and 9.10.x before 9.10.3-P3 allows remote authenticated users to cause a denial of service (INSIST assertion failure and daemon exit) via a malformed Address Prefix List (APL) record.

Affected products

  • ISC BIND: version 9.0 only; version 9.0.1 only; version 9.1 only; version 9.1.1 only; version 9.1.2 only; version 9.1.3 only; …

Published 2016-01-20. Last modified 2026-06-17.