VendorsISCbindany version
Vulnerabilities

ISC BIND any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

82CVEs
CVE-2008-0122
Off-by-one error in the inet_network function in libbind in ISC BIND 9.4.2 and earlier, as used in libc in FreeBSD 6.2 through 7.0-PRERELEASE, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted input that triggers memory corruption.
Published 2008-01-16 · Modified
10.0EPSS 0.124
CVE-2021-25216
A second vulnerability in BIND's GSSAPI security policy negotiation can be targeted by a buffer overflow attack
Published 2021-04-29 · Modified
9.8EPSS 0.824
CVE-2026-3593
Heap use-after-free vulnerability in BIND 9 DNS-over-HTTPS implementation
Published 2026-05-20 · Modified
9.8EPSS 0.015
CVE-2016-1286
named in ISC BIND 9.x before 9.9.8-P4 and 9.10.x before 9.10.3-P4 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted signature record for a DNAME record, related to db.c and resolver.c.
Published 2016-03-09 · Modified
8.6EPSS 0.621
CVE-2020-8616
BIND does not sufficiently limit the number of fetches performed when processing referrals
Published 2020-05-19 · Modified
8.6EPSS 0.106
CVE-2022-2881
Buffer overread in statistics channel code
Published 2022-09-21 · Modified
8.2EPSS 0.014
CVE-2020-8625
A vulnerability in BIND's GSSAPI security policy negotiation can be targeted by a buffer overflow attack
Published 2021-02-17 · Modified
8.1EPSS 0.642
CVE-2015-5477
named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via TKEY queries.
Published 2015-07-29 · Modified
7.82 PoCEPSS 0.913
CVE-2016-2776
buffer.c in named in ISC BIND 9 before 9.9.9-P3, 9.10.x before 9.10.4-P3, and 9.11.x before 9.11.0rc3 does not properly construct responses, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted query.
Published 2016-09-28 · Modified
7.81 PoCEPSS 0.895
CVE-2015-5722
buffer.c in named in ISC BIND 9.x before 9.9.7-P3 and 9.10.x before 9.10.2-P4 allows remote attackers to cause a denial of service (assertion failure and daemon exit) by creating a zone containing a malformed DNSSEC key and issuing a query for a name in that zone.
Published 2015-09-05 · Modified
7.8EPSS 0.339
CVE-2017-3141
Windows service and uninstall paths are not quoted when BIND is installed
Published 2019-01-16 · Modified
7.81 PoCEPSS 0.014
CVE-2001-0497
dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used for DNS Transactional Signatures (TSIG), which allows attackers to obtain the keys and perform dynamic DNS updates.
Published 2002-03-09 · Modified
7.8EPSS 0.004
CVE-2023-50387
Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue. One of the concerns is that, when there is a zone with many DNSKEY and RRSIG records, the protocol specification implies that an algorithm must evaluate all combinations of DNSKEY and RRSIG records.
Published 2024-02-14 · Modified
7.5EPSS 1.000
CVE-2020-8617
A logic error in code which checks TSIG validity can be used to trigger an assertion failure in tsig.c
Published 2020-05-19 · Modified
7.51 PoCEPSS 0.934
CVE-2023-50868
The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in a random subdomain attack, aka the "NSEC3" issue. The RFC 5155 specification implies that an algorithm must perform thousands of iterations of a hash function in certain situations.
Published 2024-02-14 · Analyzed
7.5EPSS 0.817
CVE-2018-5740
A flaw in the "deny-answer-aliases" feature can cause an assertion failure in named
Published 2019-01-16 · Modified
7.5EPSS 0.596
CVE-2022-3736
named configured to answer from stale cache may terminate unexpectedly while processing RRSIG queries
Published 2023-01-25 · Modified
7.5EPSS 0.487
CVE-2016-9131
named in ISC BIND 9.x before 9.9.9-P5, 9.10.x before 9.10.4-P5, and 9.11.x before 9.11.0-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a malformed response to an RTYPE ANY query.
Published 2017-01-12 · Modified
7.5EPSS 0.406
CVE-2016-8864
named in ISC BIND 9.x before 9.9.9-P4, 9.10.x before 9.10.4-P4, and 9.11.x before 9.11.0-P1 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNAME record in the answer section of a response to a recursive query, related to db.c and resolver.c.
Published 2016-11-02 · Modified
7.5EPSS 0.387
CVE-2017-3145
Improper fetch cleanup sequencing in the resolver can cause named to crash
Published 2019-01-16 · Modified
7.5EPSS 0.279
CVE-2017-3143
An error in TSIG authentication can permit unauthorized dynamic updates
Published 2019-01-16 · Modified
7.5EPSS 0.183
CVE-2022-3924
named configured to answer from stale cache may terminate unexpectedly at recursive-clients soft quota
Published 2023-01-25 · Modified
7.5EPSS 0.161
CVE-2022-3094
An UPDATE message flood may cause named to exhaust all available memory
Published 2023-01-25 · Modified
7.5EPSS 0.132
CVE-2006-4095
BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via certain SIG queries, which cause an assertion failure when multiple RRsets are returned.
Published 2006-09-06 · Modified
7.5EPSS 0.118
CVE-2021-25215
An assertion check can fail while answering queries for DNAME records that require the DNAME to be processed to resolve itself
Published 2021-04-29 · Modified
7.5EPSS 0.114
CVE-2018-5743
Limiting simultaneous TCP clients was ineffective
Published 2019-10-09 · Modified
7.5EPSS 0.065
CVE-2020-8623
A flaw in native PKCS#11 code can lead to a remotely triggerable assertion failure in pk11.c
Published 2020-08-21 · Modified
7.5EPSS 0.064
CVE-2022-1183
Destroying a TLS session early causes assertion failure
Published 2022-05-19 · Modified
7.5EPSS 0.062
CVE-2019-6467
An error in the nxdomain redirect feature can cause BIND to exit with an INSIST assertion failure in query.c
Published 2019-10-09 · Modified
7.5EPSS 0.055
CVE-2019-6477
TCP-pipelined queries can bypass tcp-clients limit
Published 2019-11-26 · Modified
7.5EPSS 0.041
CVE-2023-2828
named's configured cache size limit can be significantly exceeded
Published 2023-06-21 · Modified
7.5EPSS 0.038
CVE-2020-8620
In BIND 9.15.6 -> 9.16.5, 9.17.0 -> 9.17.3, An attacker who can establish a TCP connection with the server and send data on that connection can exploit this to trigger the assertion failure, causing the server to exit.
Published 2020-08-21 · Modified
7.5EPSS 0.037
CVE-2018-5744
A specially crafted packet can cause named to leak memory
Published 2019-10-09 · Modified
7.5EPSS 0.034
CVE-2022-38177
Memory leak in ECDSA DNSSEC verification code
Published 2022-09-21 · Modified
7.5EPSS 0.032
CVE-2022-38178
Memory leaks in EdDSA DNSSEC verification code
Published 2022-09-21 · Modified
7.5EPSS 0.030
CVE-2020-8621
Attempting QNAME minimization after forwarding can lead to an assertion failure in resolver.c
Published 2020-08-21 · Modified
7.5EPSS 0.030
CVE-2019-6476
An error in QNAME minimization code can cause BIND to exit with an assertion failure
Published 2019-10-17 · Modified
7.5EPSS 0.029
CVE-2023-3341
A stack exhaustion flaw in control channel code may cause named to terminate unexpectedly
Published 2023-09-20 · Modified
7.5EPSS 0.029
CVE-2009-0265
Internet Systems Consortium (ISC) BIND 9.6.0 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077 and CVE-2009-0025.
Published 2009-01-26 · Modified
7.5EPSS 0.025
CVE-2023-2911
Exceeding the recursive-clients quota may cause named to terminate unexpectedly when stale-answer-client-timeout is set to 0
Published 2023-06-21 · Modified
7.5EPSS 0.025
1 / 3Next →