BIND 9 with DNS64 enabled can unexpectedly terminate when resolving domains in RPZ

Summary: 
ISC has learned of the potential for an error condition to occur in BIND 9 that can cause a nameserver to terminate with an assertion failure when processing queries if it has been configured to use both DNS64 and Response Policy Zones (RPZ). Please see the full advisory at https://kb.isc.org/article/AA-00855 for details.
CVE: 
CVE-2012-5689
Document Version: 
2.0
Posting date: 
24 Jan 2013
Program Impacted: 
BIND
Versions affected: 
9.8.0->9.8.4-P1, 9.9.0->9.9.2-P1
Severity: 
Low
Exploitable: 
remotely
Description: 

Please see the full advisory at https://kb.isc.org/article/AA-00855 for details.

Active exploits: 
None known at this time.
Share this