The Internet Systems Consortium released BIND 9 updates that fix four vulnerabilities in resolver code. Two high-severity bugs can cause unbounded memory growth or high CPU during DNSSEC processing, which may lead to denial-of-service on affected resolvers.
Part of the PlainSec briefing for 2026-03-27