isc
13 known vulnerabilities affecting isc products.
Products
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2022-38177 | Medium | 3.2% | 7.5 | By spoofing the target resolver with responses that have a malformed ECDSA signa… | |
| CVE-2022-38178 | Medium | 3.0% | 7.5 | By spoofing the target resolver with responses that have a malformed EdDSA signa… | |
| CVE-2026-5946 | Medium | 1.9% | 7.5 | Multiple flaws have been identified in `named` related to the handling of DNS me… | |
| CVE-2026-1519 | Medium | 1.6% | 7.5 | If a BIND resolver is performing DNSSEC validation and encounters a maliciously … | |
| CVE-2026-3593 | Medium | 1.5% | 7.4 | A use-after-free vulnerability exists within the DNS-over-HTTPS implementation. … | |
| CVE-2026-5947 | Medium | 1.4% | 7.5 | Undefined behavior may result due to a race condition leading to a use-after-fre… | |
| CVE-2026-3039 | Medium | 1.0% | 7.5 | BIND servers that are configured to use TKEY-based authentication via GSS-API to… | |
| CVE-2026-3104 | Medium | 0.7% | 7.5 | A specially crafted domain can be used to cause a memory leak in a BIND resolver… | |
| CVE-2018-5745 | Low | 2.3% | 4.9 | "managed-keys" is a feature which allows a BIND resolver to automatically mainta… | |
| CVE-2022-2795 | Low | 2.2% | 5.3 | By flooding the target resolver with queries exploiting this flaw an attacker ca… | |
| CVE-2020-8619 | Low | 2.1% | 4.9 | In ISC BIND9 versions BIND 9.11.14 -> 9.11.19, BIND 9.14.9 -> 9.14.12, BIND 9.16… | |
| CVE-2026-5950 | Low | 0.7% | 5.3 | An unbounded resend loop vulnerability exists in the BIND 9 resolver state machi… | |
| CVE-2026-3592 | Low | 0.4% | 5.3 | BIND resolvers are vulnerable to an amplified resource consumption/exhaustion at… |