Linuxsecurity Fedora 43 and 42 Address Critical DNSSEC Vulnerability in BIND
Article Content
Browse articles
Fedora has released security updates for BIND, addressing a critical DNSSEC validation issue. The vulnerability, identified as CVE-2025-8677, allows DNSSEC validation to fail if a matching but invalid DNSKEY is found, potentially leading to spoofing attacks. The updates apply to BIND version 9.21.14.
Ask AI about this cluster
Answers cite the sources they use
Updated 193d ago How this analysis works
More articles in this cluster (2)
Following this threat?
Track CVE-2025-40778 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Multiple CVEs Discovered in BIND 9 Affecting DNS Resolvers Three critical vulnerabilities (CVE-2026-76163, CVE-2026-80274, CVE-2026-19666) were published on September 16, 2026, affecting BIND 9 versions 9.11.0 through 9.21.25. These vulnerabilities can lead to unexpected program exits and denial-of-service conditions for DNS resolvers. CVE-2026-76163 allows attackers to…
Netty Vulnerability Exposes Ubuntu to DNS Cache Poisoning Attacks A vulnerability in Netty, an event-driven asynchronous network application framework, has been discovered that allows attackers to exploit improper validation of NS records, potentially leading to DNS cache poisoning attacks. This issue affects Ubuntu 24.04 LTS systems using the libnetty-java package version…