BIND Updates Patch Two High-Severity DNSSEC DoS Flaws

The Internet Systems Consortium released BIND 9 updates that fix four vulnerabilities in resolver code. Two high-severity bugs can cause unbounded memory growth or high CPU during DNSSEC processing, which may lead to denial-of-service on affected resolvers.

Part of the PlainSec briefing for 2026-03-27

Sources