Memory Vulnerability in BIND 9 from ISC
CVE-2026-75029
5.3MEDIUM
What is CVE-2026-75029?
A vulnerability exists in BIND 9 that allows an attacker to send multiple copies of a unique record, such as an SOA record, in a query response. This can lead to an overflow in the in-memory RDATA set, resulting in increased memory usage for the negative cache. Such manipulation may open the door to additional memory-based attack vectors, potentially compromising the stability and performance of the affected systems.
Affected Version(s)
BIND 9 9.11.0 <= 9.18.50
BIND 9 9.20.0 <= 9.20.27
BIND 9 9.21.0 <= 9.21.25