← العودة للجدول
bind9: bind: Potential wildcard CNAME RPZ policy bypass
📅 2026-08-17 07:00:15
🟢 Low 🔥 No Vulners Vulnerability Threat Intel

📋 الوصف الكامل

An attacker who knows or guesses that a resolver uses RPZ with wildcard CNAME policies can craft query names long enough to trigger a NAMETOOLONG error condition during RPZ processing. This is not handled correctly and may lead to defeating the RPZ rule. It also may lead to an unexpected exit of the BIND 9 software. This issue affects BIND 9 versions 9.16.0 through 9.18.50, 9.20.0 through 9.20.24,

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

Vulnerability

📡 المصدر

Vulners

✅ الحلول والتخفيف

Update to v9.16.0

🔗 المصدر الأصلي ←