VORANT. Threat Intelligence Sign in Get the full feed

Multiple BIND DNS Server Vulnerabilities Disclosed

medium vulnerability telecommunicationsinfrastructure

ISC's BIND DNS server has multiple vulnerabilities that could cause denial of service, degraded performance, or abuse as a reflection attack platform.

IPA (Information-technology Promotion Agency, Japan) issued an advisory warning of multiple vulnerabilities in ISC BIND, a widely used DNS server software. Exploitation could lead to increased server load and performance degradation, abuse of the server as a reflection attack amplifier, or unintended service outages.

As of the advisory date, no active exploitation had been observed, but IPA urged DNS server administrators to apply updates urgently given the likelihood of future attacks. Patches are available from ISC directly or from vendors distributing BIND; the open-source version can be downloaded from the ISC website.

Mentioned in this report

Vulnerabilities CVE-2020-8616CVE-2020-8617weaponized

Source reporting: https://www.ipa.go.jp/archive/security/security-alert/2020/alert20200520.html

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free