Логотип exploitDog
bind:"CVE-2025-40778" OR bind:"CVE-2025-8677" OR bind:"CVE-2025-40780"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-40778" OR bind:"CVE-2025-8677" OR bind:"CVE-2025-40780"

Количество 21

Количество 21

suse-cvrf логотип

SUSE-SU-2025:3903-1

10 дней назад

Security update for bind

EPSS: Низкий
oracle-oval логотип

ELSA-2025-19912

5 дней назад

ELSA-2025-19912: bind security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-19793

6 дней назад

ELSA-2025-19793: bind9.16 security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2025-40778

19 дней назад

Under certain circumstances, BIND is too lenient when accepting records from answers, allowing an attacker to inject forged data into the cache. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 8.6
EPSS: Низкий
nvd логотип

CVE-2025-40778

19 дней назад

Under certain circumstances, BIND is too lenient when accepting records from answers, allowing an attacker to inject forged data into the cache. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 8.6
EPSS: Низкий
msrc логотип

CVE-2025-40778

17 дней назад

Cache poisoning attacks with unsolicited RRs

EPSS: Низкий
debian логотип

CVE-2025-40778

19 дней назад

Under certain circumstances, BIND is too lenient when accepting record ...

CVSS3: 8.6
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:3976-1

4 дня назад

Security update for bind

EPSS: Низкий
github логотип

GHSA-xmqp-6cj2-2hh3

19 дней назад

Under certain circumstances, BIND is too lenient when accepting records from answers, allowing an attacker to inject forged data into the cache. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 8.6
EPSS: Низкий
oracle-oval логотип

ELSA-2025-19835

6 дней назад

ELSA-2025-19835: bind security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2025-13637

20 дней назад

Уязвимость DNS-сервера BIND, связанная с загрузкой внешних ненадёжных данных вместе с надёжными данными, позволяющая нарушителю перенаправить трафик на вредоносный сайт

CVSS3: 8.6
EPSS: Низкий
ubuntu логотип

CVE-2025-8677

19 дней назад

Querying for records within a specially crafted zone containing certain malformed DNSKEY records can lead to CPU exhaustion. This issue affects BIND 9 versions 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2025-8677

19 дней назад

Querying for records within a specially crafted zone containing certain malformed DNSKEY records can lead to CPU exhaustion. This issue affects BIND 9 versions 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-8677

17 дней назад

Resource exhaustion via malformed DNSKEY handling

EPSS: Низкий
debian логотип

CVE-2025-8677

19 дней назад

Querying for records within a specially crafted zone containing certai ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2025-40780

19 дней назад

In specific circumstances, due to a weakness in the Pseudo Random Number Generator (PRNG) that is used, it is possible for an attacker to predict the source port and query ID that BIND will use. This issue affects BIND 9 versions 9.16.0 through 9.16.50, 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.16.8-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 8.6
EPSS: Низкий
nvd логотип

CVE-2025-40780

19 дней назад

In specific circumstances, due to a weakness in the Pseudo Random Number Generator (PRNG) that is used, it is possible for an attacker to predict the source port and query ID that BIND will use. This issue affects BIND 9 versions 9.16.0 through 9.16.50, 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.16.8-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 8.6
EPSS: Низкий
msrc логотип

CVE-2025-40780

17 дней назад

Cache poisoning due to weak PRNG

EPSS: Низкий
debian логотип

CVE-2025-40780

19 дней назад

In specific circumstances, due to a weakness in the Pseudo Random Numb ...

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-924g-f9mr-cm6x

19 дней назад

Querying for records within a specially crafted zone containing certain malformed DNSKEY records can lead to CPU exhaustion. This issue affects BIND 9 versions 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
SUSE-SU-2025:3903-1

Security update for bind

10 дней назад
oracle-oval логотип
ELSA-2025-19912

ELSA-2025-19912: bind security update (IMPORTANT)

5 дней назад
oracle-oval логотип
ELSA-2025-19793

ELSA-2025-19793: bind9.16 security update (IMPORTANT)

6 дней назад
ubuntu логотип
CVE-2025-40778

Under certain circumstances, BIND is too lenient when accepting records from answers, allowing an attacker to inject forged data into the cache. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 8.6
0%
Низкий
19 дней назад
nvd логотип
CVE-2025-40778

Under certain circumstances, BIND is too lenient when accepting records from answers, allowing an attacker to inject forged data into the cache. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 8.6
0%
Низкий
19 дней назад
msrc логотип
CVE-2025-40778

Cache poisoning attacks with unsolicited RRs

0%
Низкий
17 дней назад
debian логотип
CVE-2025-40778

Under certain circumstances, BIND is too lenient when accepting record ...

CVSS3: 8.6
0%
Низкий
19 дней назад
suse-cvrf логотип
SUSE-SU-2025:3976-1

Security update for bind

0%
Низкий
4 дня назад
github логотип
GHSA-xmqp-6cj2-2hh3

Under certain circumstances, BIND is too lenient when accepting records from answers, allowing an attacker to inject forged data into the cache. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 8.6
0%
Низкий
19 дней назад
oracle-oval логотип
ELSA-2025-19835

ELSA-2025-19835: bind security update (IMPORTANT)

6 дней назад
fstec логотип
BDU:2025-13637

Уязвимость DNS-сервера BIND, связанная с загрузкой внешних ненадёжных данных вместе с надёжными данными, позволяющая нарушителю перенаправить трафик на вредоносный сайт

CVSS3: 8.6
0%
Низкий
20 дней назад
ubuntu логотип
CVE-2025-8677

Querying for records within a specially crafted zone containing certain malformed DNSKEY records can lead to CPU exhaustion. This issue affects BIND 9 versions 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 7.5
0%
Низкий
19 дней назад
nvd логотип
CVE-2025-8677

Querying for records within a specially crafted zone containing certain malformed DNSKEY records can lead to CPU exhaustion. This issue affects BIND 9 versions 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 7.5
0%
Низкий
19 дней назад
msrc логотип
CVE-2025-8677

Resource exhaustion via malformed DNSKEY handling

0%
Низкий
17 дней назад
debian логотип
CVE-2025-8677

Querying for records within a specially crafted zone containing certai ...

CVSS3: 7.5
0%
Низкий
19 дней назад
ubuntu логотип
CVE-2025-40780

In specific circumstances, due to a weakness in the Pseudo Random Number Generator (PRNG) that is used, it is possible for an attacker to predict the source port and query ID that BIND will use. This issue affects BIND 9 versions 9.16.0 through 9.16.50, 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.16.8-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 8.6
0%
Низкий
19 дней назад
nvd логотип
CVE-2025-40780

In specific circumstances, due to a weakness in the Pseudo Random Number Generator (PRNG) that is used, it is possible for an attacker to predict the source port and query ID that BIND will use. This issue affects BIND 9 versions 9.16.0 through 9.16.50, 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.16.8-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 8.6
0%
Низкий
19 дней назад
msrc логотип
CVE-2025-40780

Cache poisoning due to weak PRNG

0%
Низкий
17 дней назад
debian логотип
CVE-2025-40780

In specific circumstances, due to a weakness in the Pseudo Random Numb ...

CVSS3: 8.6
0%
Низкий
19 дней назад
github логотип
GHSA-924g-f9mr-cm6x

Querying for records within a specially crafted zone containing certain malformed DNSKEY records can lead to CPU exhaustion. This issue affects BIND 9 versions 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 7.5
0%
Низкий
19 дней назад

Уязвимостей на страницу