VendorsISCbind9.10.5
Vulnerabilities

ISC BIND 9.10.5

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

21CVEs
CVE-2021-25216
A second vulnerability in BIND's GSSAPI security policy negotiation can be targeted by a buffer overflow attack
Published 2021-04-29 · Modified
9.8EPSS 0.824
CVE-2020-8616
BIND does not sufficiently limit the number of fetches performed when processing referrals
Published 2020-05-19 · Modified
8.6EPSS 0.106
CVE-2020-8617
A logic error in code which checks TSIG validity can be used to trigger an assertion failure in tsig.c
Published 2020-05-19 · Modified
7.51 PoCEPSS 0.934
CVE-2017-3145
Improper fetch cleanup sequencing in the resolver can cause named to crash
Published 2019-01-16 · Modified
7.5EPSS 0.279
CVE-2017-3143
An error in TSIG authentication can permit unauthorized dynamic updates
Published 2019-01-16 · Modified
7.5EPSS 0.183
CVE-2017-3135
Combination of DNS64 and RPZ Can Lead to Crash
Published 2019-01-16 · Modified
7.5EPSS 0.172
CVE-2021-25215
An assertion check can fail while answering queries for DNAME records that require the DNAME to be processed to resolve itself
Published 2021-04-29 · Modified
7.5EPSS 0.114
CVE-2017-3137
A response packet can cause a resolver to terminate when processing an answer containing a CNAME or DNAME
Published 2019-01-16 · Modified
7.5EPSS 0.090
CVE-2020-8623
A flaw in native PKCS#11 code can lead to a remotely triggerable assertion failure in pk11.c
Published 2020-08-21 · Modified
7.5EPSS 0.064
CVE-2018-5734
A malformed request can trigger an assertion failure in badcache.c
Published 2019-01-16 · Modified
7.5EPSS 0.063
CVE-2022-38177
Memory leak in ECDSA DNSSEC verification code
Published 2022-09-21 · Modified
7.5EPSS 0.032
CVE-2023-3341
A stack exhaustion flaw in control channel code may cause named to terminate unexpectedly
Published 2023-09-20 · Modified
7.5EPSS 0.029
CVE-2019-6468
BIND Supported Preview Edition can exit with an assertion failure if nxdomain-redirect is used
Published 2019-10-09 · Modified
7.5EPSS 0.026
CVE-2019-6469
BIND Supported Preview Edition can exit with an assertion failure if ECS is in use
Published 2019-10-09 · Modified
7.5EPSS 0.020
CVE-2021-25214
A broken inbound incremental zone update (IXFR) can cause named to terminate unexpectedly
Published 2021-04-29 · Modified
6.5EPSS 0.060
CVE-2017-3138
named exits with a REQUIRE assertion failure if it receives a null command string on its control channel
Published 2019-01-16 · Modified
6.5EPSS 0.055
CVE-2017-3140
An error processing RPZ rules can cause named to loop endlessly after handling a query
Published 2019-01-16 · Modified
5.9EPSS 0.122
CVE-2017-3136
An error handling synthesized records could cause an assertion failure when using DNS64 with "break-dnssec yes;"
Published 2019-01-16 · Modified
5.9EPSS 0.112
CVE-2021-25219
Lame cache can be abused to severely degrade resolver performance
Published 2021-10-27 · Modified
5.3EPSS 0.106
CVE-2017-3142
An error in TSIG authentication can permit unauthorized zone transfers
Published 2019-01-16 · Modified
5.3EPSS 0.054
CVE-2022-2795
Processing large delegations may severely degrade resolver performance
Published 2022-09-21 · Modified
5.3EPSS 0.022