Redpacketsecurity Multiple CVEs Discovered in BIND 9 Affecting DNS Resolvers
Article Content
- •Three critical CVEs affect BIND 9, leading to potential denial-of-service.
- •Organizations with public DNS resolvers are at high risk.
- •Immediate patching is recommended, but no active exploitation is confirmed.
Three critical vulnerabilities (CVE-2026-76163, CVE-2026-80274, CVE-2026-19666) were published on September 16, 2026, affecting BIND 9 versions 9.11.0 through 9.21.25. These vulnerabilities can lead to unexpected program exits and denial-of-service conditions for DNS resolvers. CVE-2026-76163 allows attackers to exploit a TKEY query without a global options block, while CVE-2026-80274 and CVE-2026-19666 involve malformed DNS responses causing resolver crashes. Organizations operating public recursive resolvers, especially those using DNS64, are particularly at risk. Immediate remediation is advised, but no active exploitation has been confirmed. The vulnerabilities have been rated with high availability risks but lack PoC or KEV indicators. Administrators are urged to apply patches promptly and monitor resolver logs for anomalies.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (6)
Following this threat?
Track CVE-2026-19666 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical GitLab Vulnerabilities Exploited Within Hours of Disclosure On September 10, 2026, GitLab released patches for critical vulnerabilities CVE-2026-85706 and CVE-2026-87719. CVE-2026-85706, a path traversal flaw, allows unauthenticated users to read arbitrary files from GitLab servers, while CVE-2026-87719 enables credential theft via insecure deserialization. Both…