US CISA Urges BIND 9 Users to Address New DNS Exploits (www.bankinfosecurity.in)
from kid@sh.itjust.works to cybersecurity@sh.itjust.works on 25 Jul 2024 11:52
https://sh.itjust.works/post/22742717

#cybersecurity

threaded - newest

lnxtx@feddit.nl on 27 Jul 2024 19:37 collapse

CVE-2024-4076: Assertion failure when serving both stale cache data and authoritative zone content
CVE-2024-1975: SIG(0) can be used to exhaust CPU resources
CVE-2024-1737: BIND’s database will be slow if a very large number of RRs exist at the same name
CVE-2024-0760: A flood of DNS messages over TCP may make the server unstable