CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.8. Its EPSS score suggests a 22.8% probability of exploitation in the next 30 days. It may be remotely exploitable. It may lead to a denial-of-service condition.
CVE
CVE-2016-2088
Severity
MEDIUM
CVSS
6.8
EPSS
22.79%
Original NVD Description
resolver.c in named in ISC BIND 9.10.x before 9.10.3-P4, when DNS cookies are enabled, allows remote attackers to cause a denial of service (INSIST assertion failure and daemon exit) via a malformed packet with more than one cookie option.