VendorsISCbind9.16.32
Vulnerabilities

ISC BIND 9.16.32

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

13CVEs
CVE-2022-3736
named configured to answer from stale cache may terminate unexpectedly while processing RRSIG queries
Published 2023-01-25 · Modified
7.5EPSS 0.487
CVE-2022-3924
named configured to answer from stale cache may terminate unexpectedly at recursive-clients soft quota
Published 2023-01-25 · Modified
7.5EPSS 0.161
CVE-2022-3094
An UPDATE message flood may cause named to exhaust all available memory
Published 2023-01-25 · Modified
7.5EPSS 0.132
CVE-2022-38177
Memory leak in ECDSA DNSSEC verification code
Published 2022-09-21 · Modified
7.5EPSS 0.032
CVE-2022-38178
Memory leaks in EdDSA DNSSEC verification code
Published 2022-09-21 · Modified
7.5EPSS 0.030
CVE-2023-3341
A stack exhaustion flaw in control channel code may cause named to terminate unexpectedly
Published 2023-09-20 · Modified
7.5EPSS 0.029
CVE-2022-3080
BIND 9 resolvers configured to answer from stale cache with zero stale-answer-client-timeout may terminate unexpectedly
Published 2022-09-21 · Modified
7.5EPSS 0.019
CVE-2023-4408
Parsing large DNS messages may cause excessive CPU load
Published 2024-02-13 · Modified
7.5EPSS 0.013
CVE-2023-5517
Querying RFC 1918 reverse zones may cause an assertion failure when "nxdomain-redirect" is enabled
Published 2024-02-13 · Modified
7.5EPSS 0.012
CVE-2023-5679
Enabling both DNS64 and serve-stale may cause an assertion failure during recursive resolution
Published 2024-02-13 · Modified
7.5EPSS 0.012
CVE-2023-6516
Specific recursive query patterns may lead to an out-of-memory condition
Published 2024-02-13 · Modified
7.5EPSS 0.011
CVE-2022-2795
Processing large delegations may severely degrade resolver performance
Published 2022-09-21 · Modified
5.3EPSS 0.022
CVE-2023-5680
Cleaning an ECS-enabled cache may cause excessive CPU load
Published 2024-02-13 · Modified
5.3EPSS 0.006