VORANT. Threat Intelligence Sign in Get the full feed

BIND DNS servers face remote DoS vulnerability

high vulnerability

BIND DNS server vulnerability allows remote denial-of-service attacks; patches available, no active exploitation observed yet.

Japan's IPA (Information-technology Promotion Agency) issued an advisory regarding a remote denial-of-service vulnerability in BIND DNS servers. Exploitation of this flaw could lead to unintended service interruptions. The advisory notes that no attacks exploiting this vulnerability have been confirmed at the time of publication, but emphasizes the potential for future exploitation.

ISC and various vendors have released updated versions of BIND that address this vulnerability. DNS server administrators are urged to apply the available patches promptly to mitigate the risk of service disruption.

The advisory was published on January 26, 2023, and directs administrators to contact ISC or their respective vendors for patch deployment. IPA's Security Center clarifies that they cannot provide support for individual system configurations and recommends consulting product vendors for specific implementation guidance.

Source reporting: https://www.ipa.go.jp/archive/security/security-alert/2022/alert20230126.html

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free