Blog | G5 Cyber Security

Flaws in the BIND software expose DNS servers to attacks

The Internet Systems Consortium (ISC)2 released updates for the BIND DNS software to address several vulnerabilities that can be exploited by attackers to trigger denial-of-service (DoS) conditions and potentially to remotely execute arbitrary code. The most serious vulnerability, tracked as CVE-2021-25216, is a buffer overflow issue that can lead to a server crash and under specific conditions to remote code execution. The good news is that the ISC was not aware of any attacks exploiting the above vulnerabilities.”]

Source: https://securityaffairs.co/wordpress/117414/security/bind-dns-servers-flaws.html

Exit mobile version