logo

CVE-2025-13878: High-Severity BIND Flaw Exposes Servers to Remote Crash

ID: 2f3c71c1-f1bb-5416-8f30-42589fbd285b

STIX ID: report--2f3c71c1-f1bb-5416-8f30-42589fbd285b

Feed Name: securityonline.info

Threat Score
70/100

Date Published: 2026-01-22

Date Updated: 2026-04-23

Author: Ddos

...
...

ISC has issued a high-severity advisory for BIND 9 (CVE-2025-13878, CVSS 7.5) describing a remotely triggerable crash in the named daemon when handling malformed BRID/HHIT DNS records. Affected 9.18, 9.20, and 9.21 branch versions are listed and ISC recommends upgrading to 9.18.44, 9.20.18, or 9.21.17; the advisory reports no known active exploits but urges immediate patching due to wide impact on authoritative servers and resolvers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.