CVE-2025-13878: High-Severity BIND Flaw Exposes Servers to Remote Crash
ID: 2f3c71c1-f1bb-5416-8f30-42589fbd285b
STIX ID: report--2f3c71c1-f1bb-5416-8f30-42589fbd285b
Feed Name: securityonline.info
Threat Score
ISC has issued a high-severity advisory for BIND 9 (CVE-2025-13878, CVSS 7.5) describing a remotely triggerable crash in the named daemon when handling malformed BRID/HHIT DNS records. Affected 9.18, 9.20, and 9.21 branch versions are listed and ISC recommends upgrading to 9.18.44, 9.20.18, or 9.21.17; the advisory reports no known active exploits but urges immediate patching due to wide impact on authoritative servers and resolvers.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
