Search CVE reports


Toggle filters

1051 – 1060 of 52206 results

Status is adjusted based on your filters.


CVE-2026-19666

Medium priority
Needs evaluation

On a resolver configured to use ``dns64``, if an applicable answer from the authoritative server is malformed in a specific way, the resolver `named` process will exit unexpectedly. This issue affects BIND 9 versions 9.11.0...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 22.04 LTS
bind9 Needs evaluation
isc-dhcp Not affected
bind9-libs Needs evaluation
Show less packages

CVE-2026-19033

Medium priority
Needs evaluation

For a secondary zone with transfers restricted by TSIG, `named` may start to serve the data provided in a zone transfer before the final message with the TSIG signature arrives. This could allow an attacker that does not actually...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 22.04 LTS
bind9 Needs evaluation
isc-dhcp Not affected
bind9-libs Needs evaluation
Show less packages

CVE-2026-81736

Medium priority
Needs evaluation

If a BIND resolver has cached a tree of SVCB/HTTPS AliasMode records, and is then queried for the root of that tree, the resolver will spend disproportionate CPU time constructing the response. This issue affects BIND 9 versions...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 22.04 LTS
bind9 Needs evaluation
isc-dhcp Not affected
bind9-libs Needs evaluation
Show less packages

CVE-2026-81563

Medium priority
Needs evaluation

A BIND resolver encountering an SVCB/HTTPS AliasMode record referencing 14 or more SVCB/HTTPS ServiceMode records may fail to properly deallocate internal resources. If this happens repeatedly, resource exhaustion will eventually...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 22.04 LTS
bind9 Needs evaluation
isc-dhcp Not affected
bind9-libs Needs evaluation
Show less packages

CVE-2026-78301

Medium priority
Needs evaluation

A malformed zone may contain an NS or DNAME node above its origin, which `named` treats as a zone cut. If an attacker inserts a malformed zone into a BIND authoritative server (e.g., via zone transfer), queries for names inside...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 22.04 LTS
bind9 Needs evaluation
isc-dhcp Not affected
bind9-libs Needs evaluation
Show less packages

CVE-2026-77692

Medium priority
Needs evaluation

An attacker can cause `named` to abort by sending a crafted DNS-over-HTTPS request with a cryptographically invalid SIG(0) record, and then closing the transport connection prematurely. This issue affects BIND 9 versions 9.20.0...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 22.04 LTS
bind9 Needs evaluation
isc-dhcp Not affected
bind9-libs Needs evaluation
Show less packages

CVE-2026-19941

Medium priority
Needs evaluation

An inapplicable NSEC record may be accepted by a `named` resolver as proof that no wildcard exists, which could allow an attacker at the same or an upstream level of the zone name to mask the existence of a victim's wildcard...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 22.04 LTS
bind9 Needs evaluation
isc-dhcp Not affected
bind9-libs Needs evaluation
Show less packages

CVE-2026-19667

Medium priority
Needs evaluation

If an attacker-controlled authoritative server can produce a negative answer that is exactly 65536 bytes, then a flaw in `named` results in a negative cache entry of 0 bytes. When this entry is subsequently read, `named`...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 22.04 LTS
bind9 Needs evaluation
isc-dhcp Not affected
bind9-libs Needs evaluation
Show less packages

CVE-2026-19662

Medium priority
Needs evaluation

An attacker may be able to cause a `named` resolver to abort. The attack requires inducing the victim resolver to send multiple queries for a DNSSEC-signed zone hosted by an authoritative server under the control of the attacker....

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 22.04 LTS
bind9 Needs evaluation
isc-dhcp Not affected
bind9-libs Needs evaluation
Show less packages

CVE-2026-90049

Medium priority
Vulnerable

In the Linux kernel, the following vulnerability has been resolved: net: skbuff: don't skb_tx_error() the source skb in skb_zerocopy() skb_zerocopy() copies frags from @from into @to. On an skb_orphan_frags() failure it calls...

168 affected packages

linux, linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11...

Package 22.04 LTS
linux Vulnerable
linux-hwe Not in release
linux-hwe-5.4 Not in release
linux-hwe-5.8 Not in release
linux-hwe-5.11 Not in release
linux-hwe-5.13 Not in release
linux-hwe-5.15 Not in release
linux-hwe-5.19 Ignored
linux-hwe-6.2 Ignored
linux-hwe-6.5 Ignored
linux-hwe-6.8 Vulnerable
linux-hwe-6.11 Not in release
linux-hwe-6.14 Not in release
linux-hwe-6.17 Not in release
linux-hwe-7.0 Not in release
linux-hwe-edge Not in release
linux-lts-xenial Not in release
linux-kvm Vulnerable
linux-allwinner-5.19 Ignored
linux-aws Vulnerable
linux-aws-5.0 Not in release
linux-aws-5.3 Not in release
linux-aws-5.4 Not in release
linux-aws-5.8 Not in release
linux-aws-5.11 Not in release
linux-aws-5.13 Not in release
linux-aws-5.15 Not in release
linux-aws-5.19 Ignored
linux-aws-6.2 Ignored
linux-aws-6.5 Ignored
linux-aws-6.8 Vulnerable
linux-aws-6.14 Not in release
linux-aws-6.17 Not in release
linux-aws-7.0 Not in release
linux-aws-hwe Not in release
linux-azure Vulnerable
linux-azure-4.15 Not in release
linux-azure-5.3 Not in release
linux-azure-5.4 Not in release
linux-azure-5.8 Not in release
linux-azure-5.11 Not in release
linux-azure-5.13 Not in release
linux-azure-5.15 Not in release
linux-azure-5.19 Ignored
linux-azure-6.2 Ignored
linux-azure-6.5 Ignored
linux-azure-6.8 Vulnerable
linux-azure-6.11 Not in release
linux-azure-6.14 Not in release
linux-azure-6.17 Not in release
linux-azure-7.0 Not in release
linux-azure-fde Vulnerable
linux-azure-fde-5.15 Not in release
linux-azure-fde-5.19 Ignored
linux-azure-fde-6.2 Ignored
linux-azure-fde-6.8 Vulnerable
linux-azure-fde-6.14 Not in release
linux-azure-fde-6.17 Not in release
linux-azure-fde-7.0 Not in release
linux-azure-nvidia Not in release
linux-azure-nvidia-6.14 Not in release
linux-bluefield Not in release
linux-azure-edge Not in release
linux-fips Vulnerable
linux-aws-fips Vulnerable
linux-azure-fips Vulnerable
linux-gcp-fips Vulnerable
linux-gcp Vulnerable
linux-gcp-4.15 Not in release
linux-gcp-5.3 Not in release
linux-gcp-5.4 Not in release
linux-gcp-5.8 Not in release
linux-gcp-5.11 Not in release
linux-gcp-5.13 Not in release
linux-gcp-5.15 Not in release
linux-gcp-5.19 Ignored
linux-gcp-6.2 Ignored
linux-gcp-6.5 Ignored
linux-gcp-6.8 Vulnerable
linux-gcp-6.11 Not in release
linux-gcp-6.14 Not in release
linux-gcp-6.17 Not in release
linux-gcp-7.0 Not in release
linux-gke Vulnerable
linux-gke-4.15 Not in release
linux-gke-5.4 Not in release
linux-gke-5.15 Not in release
linux-gkeop Vulnerable
linux-gkeop-5.4 Not in release
linux-gkeop-5.15 Not in release
linux-ibm Vulnerable
linux-ibm-5.4 Not in release
linux-ibm-5.15 Not in release
linux-ibm-6.8 Vulnerable
linux-intel-5.13 Not in release
linux-intel-iotg Vulnerable
linux-intel-iotg-5.15 Not in release
linux-iot Not in release
linux-intel-iot-realtime Vulnerable
linux-lowlatency Vulnerable
linux-lowlatency-hwe-5.15 Not in release
linux-lowlatency-hwe-5.19 Ignored
linux-lowlatency-hwe-6.2 Ignored
linux-lowlatency-hwe-6.5 Ignored
linux-lowlatency-hwe-6.8 Vulnerable
linux-lowlatency-hwe-6.11 Not in release
linux-nvidia Vulnerable
linux-nvidia-6.2 Ignored
linux-nvidia-6.5 Ignored
linux-nvidia-6.8 Vulnerable
linux-nvidia-6.11 Not in release
linux-nvidia-6.17 Not in release
linux-nvidia-7.0 Not in release
linux-nvidia-bos Not in release
linux-nvidia-lowlatency Not in release
linux-nvidia-tegra Vulnerable
linux-nvidia-tegra-5.15 Not in release
linux-nvidia-tegra-igx Vulnerable
linux-oracle Vulnerable
linux-oracle-5.0 Not in release
linux-oracle-5.3 Not in release
linux-oracle-5.4 Not in release
linux-oracle-5.8 Not in release
linux-oracle-5.11 Not in release
linux-oracle-5.13 Not in release
linux-oracle-5.15 Not in release
linux-oracle-6.5 Ignored
linux-oracle-6.8 Vulnerable
linux-oracle-6.14 Not in release
linux-oracle-6.17 Not in release
linux-oracle-7.0 Not in release
linux-oem Not in release
linux-oem-5.6 Not in release
linux-oem-5.10 Not in release
linux-oem-5.13 Not in release
linux-oem-5.14 Not in release
linux-oem-5.17 Ignored
linux-oem-6.0 Ignored
linux-oem-6.1 Ignored
linux-oem-6.5 Ignored
linux-oem-6.8 Not in release
linux-oem-6.11 Not in release
linux-oem-6.14 Not in release
linux-oem-6.17 Not in release
linux-oem-7.0 Not in release
linux-raspi Vulnerable
linux-raspi2 Not in release
linux-raspi-5.4 Not in release
linux-raspi-realtime Not in release
linux-realtime Vulnerable
linux-realtime-6.8 Vulnerable
linux-realtime-6.14 Not in release
linux-riscv Ignored
linux-riscv-5.8 Not in release
linux-riscv-5.11 Not in release
linux-riscv-5.15 Not in release
linux-riscv-5.19 Ignored
linux-riscv-6.5 Ignored
linux-riscv-6.8 Vulnerable
linux-riscv-6.14 Not in release
linux-riscv-6.17 Not in release
linux-riscv-7.0 Not in release
linux-starfive-5.19 Ignored
linux-starfive-6.2 Ignored
linux-starfive-6.5 Ignored
linux-xilinx Not in release
linux-xilinx-zynqmp Vulnerable
linux-realtime-6.17 Not in release
Show all 168 packages Show less packages