Количество 24
Количество 24
CVE-2026-5946
Multiple flaws have been identified in `named` related to the handling of DNS messages whose CLASS is not Internet (`IN`) — for example, `CHAOS` or `HESIOD`, or DNS messages that specify meta-classes (`ANY` or `NONE`) in the question section. Specially crafted requests reaching the affected code paths — recursion, dynamic updates (`UPDATE`), zone change notifications (`NOTIFY`), or processing of `IN`-specific record types in non-`IN` data — can cause assertion failures in `named`. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.48, 9.20.0 through 9.20.22, 9.21.0 through 9.21.21, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.48-S1, and 9.20.9-S1 through 9.20.22-S1.
CVE-2026-5946
Multiple flaws have been identified in `named` related to the handling of DNS messages whose CLASS is not Internet (`IN`) — for example, `CHAOS` or `HESIOD`, or DNS messages that specify meta-classes (`ANY` or `NONE`) in the question section. Specially crafted requests reaching the affected code paths — recursion, dynamic updates (`UPDATE`), zone change notifications (`NOTIFY`), or processing of `IN`-specific record types in non-`IN` data — can cause assertion failures in `named`. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.48, 9.20.0 through 9.20.22, 9.21.0 through 9.21.21, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.48-S1, and 9.20.9-S1 through 9.20.22-S1.
CVE-2026-5946
Multiple flaws have been identified in `named` related to the handling of DNS messages whose CLASS is not Internet (`IN`) — for example, `CHAOS` or `HESIOD`, or DNS messages that specify meta-classes (`ANY` or `NONE`) in the question section. Specially crafted requests reaching the affected code paths — recursion, dynamic updates (`UPDATE`), zone change notifications (`NOTIFY`), or processing of `IN`-specific record types in non-`IN` data — can cause assertion failures in `named`. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.48, 9.20.0 through 9.20.22, 9.21.0 through 9.21.21, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.48-S1, and 9.20.9-S1 through 9.20.22-S1.
CVE-2026-5946
Invalid handling of CLASS != IN
CVE-2026-5946
Multiple flaws have been identified in `named` related to the handling ...
GHSA-cqgq-ff3f-rj7r
Multiple flaws have been identified in `named` related to the handling of DNS messages whose CLASS is not Internet (`IN`) — for example, `CHAOS` or `HESIOD`, or DNS messages that specify meta-classes (`ANY` or `NONE`) in the question section. Specially crafted requests reaching the affected code paths — recursion, dynamic updates (`UPDATE`), zone change notifications (`NOTIFY`), or processing of `IN`-specific record types in non-`IN` data — can cause assertion failures in `named`. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.48, 9.20.0 through 9.20.22, 9.21.0 through 9.21.21, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.48-S1, and 9.20.9-S1 through 9.20.22-S1.
BDU:2026-08887
Уязвимость механизма обработки DNS-запросов в демоне named DNS-сервера BIND, позволяющая нарушителю вызвать отказ в обслуживании
RLSA-2026:24368
Important: bind9.18 security update
RLSA-2026:24367
Important: bind security update
RLSA-2026:24339
Important: bind security update
RLSA-2026:24338
Important: bind security update
RLSA-2026:23360
Important: bind9.16 security update
ELSA-2026-24368
ELSA-2026-24368: bind9.18 security update (IMPORTANT)
ELSA-2026-24367
ELSA-2026-24367: bind security update (IMPORTANT)
ELSA-2026-24339
ELSA-2026-24339: bind security update (IMPORTANT)
ELSA-2026-24338
ELSA-2026-24338: bind security update (IMPORTANT)
ELSA-2026-23360
ELSA-2026-23360: bind9.16 security update (IMPORTANT)
SUSE-SU-2026:2779-1
Security update for bind
SUSE-SU-2026:2617-1
Security update for bind
SUSE-SU-2026:2616-1
Security update for bind
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-5946 Multiple flaws have been identified in `named` related to the handling of DNS messages whose CLASS is not Internet (`IN`) — for example, `CHAOS` or `HESIOD`, or DNS messages that specify meta-classes (`ANY` or `NONE`) in the question section. Specially crafted requests reaching the affected code paths — recursion, dynamic updates (`UPDATE`), zone change notifications (`NOTIFY`), or processing of `IN`-specific record types in non-`IN` data — can cause assertion failures in `named`. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.48, 9.20.0 through 9.20.22, 9.21.0 through 9.21.21, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.48-S1, and 9.20.9-S1 through 9.20.22-S1. | CVSS3: 7.5 | 2% Низкий | 2 месяца назад | |
CVE-2026-5946 Multiple flaws have been identified in `named` related to the handling of DNS messages whose CLASS is not Internet (`IN`) — for example, `CHAOS` or `HESIOD`, or DNS messages that specify meta-classes (`ANY` or `NONE`) in the question section. Specially crafted requests reaching the affected code paths — recursion, dynamic updates (`UPDATE`), zone change notifications (`NOTIFY`), or processing of `IN`-specific record types in non-`IN` data — can cause assertion failures in `named`. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.48, 9.20.0 through 9.20.22, 9.21.0 through 9.21.21, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.48-S1, and 9.20.9-S1 through 9.20.22-S1. | CVSS3: 7.5 | 2% Низкий | 2 месяца назад | |
CVE-2026-5946 Multiple flaws have been identified in `named` related to the handling of DNS messages whose CLASS is not Internet (`IN`) — for example, `CHAOS` or `HESIOD`, or DNS messages that specify meta-classes (`ANY` or `NONE`) in the question section. Specially crafted requests reaching the affected code paths — recursion, dynamic updates (`UPDATE`), zone change notifications (`NOTIFY`), or processing of `IN`-specific record types in non-`IN` data — can cause assertion failures in `named`. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.48, 9.20.0 through 9.20.22, 9.21.0 through 9.21.21, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.48-S1, and 9.20.9-S1 through 9.20.22-S1. | CVSS3: 7.5 | 2% Низкий | 2 месяца назад | |
CVE-2026-5946 Invalid handling of CLASS != IN | CVSS3: 7.5 | 2% Низкий | 2 месяца назад | |
CVE-2026-5946 Multiple flaws have been identified in `named` related to the handling ... | CVSS3: 7.5 | 2% Низкий | 2 месяца назад | |
GHSA-cqgq-ff3f-rj7r Multiple flaws have been identified in `named` related to the handling of DNS messages whose CLASS is not Internet (`IN`) — for example, `CHAOS` or `HESIOD`, or DNS messages that specify meta-classes (`ANY` or `NONE`) in the question section. Specially crafted requests reaching the affected code paths — recursion, dynamic updates (`UPDATE`), zone change notifications (`NOTIFY`), or processing of `IN`-specific record types in non-`IN` data — can cause assertion failures in `named`. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.48, 9.20.0 through 9.20.22, 9.21.0 through 9.21.21, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.48-S1, and 9.20.9-S1 through 9.20.22-S1. | CVSS3: 7.5 | 2% Низкий | 2 месяца назад | |
BDU:2026-08887 Уязвимость механизма обработки DNS-запросов в демоне named DNS-сервера BIND, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 2% Низкий | 3 месяца назад | |
RLSA-2026:24368 Important: bind9.18 security update | около 2 месяцев назад | |||
RLSA-2026:24367 Important: bind security update | около 2 месяцев назад | |||
RLSA-2026:24339 Important: bind security update | около 2 месяцев назад | |||
RLSA-2026:24338 Important: bind security update | около 2 месяцев назад | |||
RLSA-2026:23360 Important: bind9.16 security update | около 2 месяцев назад | |||
ELSA-2026-24368 ELSA-2026-24368: bind9.18 security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-24367 ELSA-2026-24367: bind security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-24339 ELSA-2026-24339: bind security update (IMPORTANT) | около 2 месяцев назад | |||
ELSA-2026-24338 ELSA-2026-24338: bind security update (IMPORTANT) | 17 дней назад | |||
ELSA-2026-23360 ELSA-2026-23360: bind9.16 security update (IMPORTANT) | около 2 месяцев назад | |||
SUSE-SU-2026:2779-1 Security update for bind | 26 дней назад | |||
SUSE-SU-2026:2617-1 Security update for bind | около 1 месяца назад | |||
SUSE-SU-2026:2616-1 Security update for bind | около 1 месяца назад |
Уязвимостей на страницу