REDHAT-BUG-2405827: High severity ISC BIND vulnerability
Published Oct 22, 2025
·Updated
Under certain circumstances, BIND is too lenient when accepting records from answers, allowing an attacker to inject forged data into the cache.
Affected Software
1 affected component
ISC BIND
Event History
Oct 22, 2025
Data Sourced
via Red Hat·03:09 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2405827?
The severity of REDHAT-BUG-2405827 is classified as critical due to the potential for DNS cache poisoning attacks.
2
How do I fix REDHAT-BUG-2405827?
To fix REDHAT-BUG-2405827, update ISC BIND to the latest version that addresses this vulnerability.
3
What systems are affected by REDHAT-BUG-2405827?
REDHAT-BUG-2405827 affects systems running ISC BIND under specific configurations.
4
What kind of attack is enabled by REDHAT-BUG-2405827?
REDHAT-BUG-2405827 allows attackers to inject forged DNS records into the cache, potentially leading to domain spoofing.
5
Is there a workaround for REDHAT-BUG-2405827?
A temporary workaround for REDHAT-BUG-2405827 may involve configuring BIND to limit the types of records it accepts until a patch is applied.