<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 17:11:29 +0000</lastBuildDate>
    <item>
      <title>bdu:2021-00125</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-00125</link>
      <description>bdu:2021-00125</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-00125</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2020-8617 — CVE-2020-8617 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2020-8617</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2020-8617</guid>
    </item>
    <item>
      <title>certfr-2020-avi-302 — De multiples vulnérabilités ont été découvertes dans Bind. Elles
permettent à un attaquant de provoquer un déni de serv…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-302</link>
      <description>certfr-2020-avi-302</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-302</guid>
    </item>
    <item>
      <title>cnvd-2020-29429</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-29429</link>
      <description>cnvd-2020-29429</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-29429</guid>
    </item>
    <item>
      <title>EUVD-2026-171769</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-171769</link>
      <description>EUVD-2026-171769</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-171769</guid>
    </item>
    <item>
      <title>fkie_cve-2020-8617</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-8617</link>
      <description>&lt;p&gt;Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an inconsistent state if the attacker knows (or successfully guesses) the name of a TSIG key used by the server. Since BIND, by default, configures a local session key even on servers whose configuration does not otherwise make use of it, almost all current BIND servers are vulnerable. In releases of BIND dating from March 2018 and after, an assertion check in tsig.c detects this inconsistent state and deliberately exits. Prior to the introduction of the check the server would continue operating in an inconsistent state, with potentially harmful results.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an inconsistent state if the attacker knows (or successfully guesses) the name of a TSIG key used by the server. Since BIND, by default, configures a local session key even on servers whose configuration does not otherwise make use of it, almost all current BIND servers are vulnerable. In releases of BIND dating from March 2018 and after, an assertion check in tsig.c detects this inconsistent state and deliberately exits. Prior to the introduction of the check the server would continue operating in an inconsistent state, with potentially harmful results.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-8617</guid>
    </item>
    <item>
      <title>GHSA-q6g5-8p95-hqh7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-q6g5-8p95-hqh7</link>
      <description>&lt;p&gt;Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an inconsistent state if the attacker knows (or successfully guesses) the name of a TSIG key used by the server. Since BIND, by default, configures a local session key even on servers whose configuration does not otherwise make use of it, almost all current BIND servers are vulnerable. In releases of BIND dating from March 2018 and after, an assertion check in tsig.c detects this inconsistent state and deliberately exits. Prior to the introduction of the check the server would continue operating in an inconsistent state, with potentially harmful results.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an inconsistent state if the attacker knows (or successfully guesses) the name of a TSIG key used by the server. Since BIND, by default, configures a local session key even on servers whose configuration does not otherwise make use of it, almost all current BIND servers are vulnerable. In releases of BIND dating from March 2018 and after, an assertion check in tsig.c detects this inconsistent state and deliberately exits. Prior to the introduction of the check the server would continue operating in an inconsistent state, with potentially harmful results.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-q6g5-8p95-hqh7</guid>
    </item>
    <item>
      <title>gsd-2020-8617</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-8617</link>
      <description>gsd-2020-8617</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-8617</guid>
    </item>
    <item>
      <title>openSUSE-SU-2020:1699-1 — Security update for bind</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2020:1699-1</link>
      <description>&lt;p&gt;Security update for bind&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for bind&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2020:1699-1</guid>
    </item>
    <item>
      <title>RHSA-2020:2345 — Red Hat Security Advisory: bind security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:2345</link>
      <description>&lt;p&gt;bind: BIND does not sufficiently limit the number of fetches performed when processing referrals bind: A logic error in code which checks TSIG validity can be used to trigger an assertion failure in tsig.c&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;bind: BIND does not sufficiently limit the number of fetches performed when processing referrals bind: A logic error in code which checks TSIG validity can be used to trigger an assertion failure in tsig.c&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:2345</guid>
    </item>
    <item>
      <title>SUSE-SU-2020:1350-1 — Security update for bind</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2020:1350-1</link>
      <description>&lt;p&gt;Security update for bind&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for bind&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2020:1350-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2020-8617</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-8617</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: bind9, Ubuntu:16.04:LTS: bind9, Ubuntu:18.04:LTS: bind9, Ubuntu:20.04:LTS: bind9&lt;/p&gt;
&lt;p&gt;Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an inconsistent state if the attacker knows (or successfully guesses) the name of a TSIG key used by the server. Since BIND, by default, configures a local session key even on servers whose configuration does not otherwise make use of it, almost all current BIND servers are vulnerable. In releases of BIND dating from March 2018 and after, an assertion check in tsig.c detects this inconsistent state and deliberately exits. Prior to the introduction of the check the server would continue operating in an inconsistent state, with potentially harmful results.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: bind9, Ubuntu:16.04:LTS: bind9, Ubuntu:18.04:LTS: bind9, Ubuntu:20.04:LTS: bind9&lt;/p&gt;
&lt;p&gt;Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an inconsistent state if the attacker knows (or successfully guesses) the name of a TSIG key used by the server. Since BIND, by default, configures a local session key even on servers whose configuration does not otherwise make use of it, almost all current BIND servers are vulnerable. In releases of BIND dating from March 2018 and after, an assertion check in tsig.c detects this inconsistent state and deliberately exits. Prior to the introduction of the check the server would continue operating in an inconsistent state, with potentially harmful results.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-8617</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1198 — Internet Systems Consortium BIND: Mehrere Schwachstellen ermöglichen Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1198</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Internet Systems Consortium BIND ausnutzen, um einen Denial of Service Angriff durchzuführen oder sonstige Auswirkungen zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Internet Systems Consortium BIND ausnutzen, um einen Denial of Service Angriff durchzuführen oder sonstige Auswirkungen zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1198</guid>
    </item>
  </channel>
</rss>
