https://seclists.org/oss-sec/2026/q1/98: ISC has disclosed one vulnerability in BIND 9 (CVE-2025-13878)
Published Jan 21, 2026
·Updated
Affected Software
1 affected component
Internet Systems Consortium BIND 9
Frequently Asked Questions
1
What is the severity of CVE-2025-13878?
CVE-2025-13878 has been classified as a critical severity vulnerability due to its potential to cause service disruptions.
2
How do I fix CVE-2025-13878?
To fix CVE-2025-13878, upgrade to the latest version of BIND 9 as released by Internet Systems Consortium.
3
What type of issues does CVE-2025-13878 cause?
CVE-2025-13878 can cause the named service to terminate unexpectedly when processing malformed BRID/HHIT records.
4
When was CVE-2025-13878 disclosed?
CVE-2025-13878 was disclosed by the Internet Systems Consortium on January 21, 2026.
5
Which software is affected by CVE-2025-13878?
The vulnerability CVE-2025-13878 affects the BIND 9 software from Internet Systems Consortium.