{"id":"USN-8648-1","summary":"bind9 vulnerabilities","details":"It was discovered that Bind incorrectly accepted NSEC3 records whose signer\nname did not match the owning zone. A remote attacker could possibly use\nthis issue to perform NSEC3 impersonation attacks, bypassing DNSSEC\nvalidation. (CVE-2026-10723)\n\nIt was discovered that Bind incorrectly handled Key Records using the\nPRIVATEDNS algorithm. A remote attacker could possibly use this issue to\ncause Bind to crash, resulting in a denial of service. (CVE-2026-10822)\n\nIt was discovered that Bind incorrectly handled wildcard CNAME expansion in\nResponse Policy Zones. A remote attacker could possibly use this issue to\nbypass configured RPZ policies. (CVE-2026-11331)\n\nIt was discovered that Bind performed unnecessary validation of DNSSEC\nsigned records. A remote attacker could possibly use this issue to cause\nBind to use excessive resources, leading to a denial of service. This issue\nonly affected Ubuntu 26.04 LTS. (CVE-2026-11605)\n\nIt was discovered that Bind incorrectly tracked memory usage in the DNS\ncache. A remote attacker could possibly use this issue to cause Bind to use\nmemory beyond configured limits, leading to a denial of service.\n(CVE-2026-11622)\n\nIt was discovered that Bind incorrectly handled signed wildcard records\nwith label count discrepancies and RRSIG validation. A remote attacker\ncould possibly use this issue to perform cache poisoning attacks.\n(CVE-2026-11721)\n\nIt was discovered that Bind incorrectly handled certain CNAME and DNAME\nrecord orderings in the resolver. A remote attacker could possibly use this\nissue to cause Bind to crash, resulting in a denial of service.\n(CVE-2026-12617)\n\nIt was discovered that Bind incorrectly validated out-of-zone NSEC next\nowner names during DNSSEC validation. A remote attacker could possibly use\nthis issue to bypass DNSSEC validation. (CVE-2026-13321)","modified":"2026-08-19T19:30:09.769643948Z","published":"2026-08-19T11:45:39Z","related":["UBUNTU-CVE-2026-10723","UBUNTU-CVE-2026-10822","UBUNTU-CVE-2026-11331","UBUNTU-CVE-2026-11605","UBUNTU-CVE-2026-11622","UBUNTU-CVE-2026-11721","UBUNTU-CVE-2026-12617","UBUNTU-CVE-2026-13321"],"upstream":["CVE-2026-10723","CVE-2026-10822","CVE-2026-11331","CVE-2026-11605","CVE-2026-11622","CVE-2026-11721","CVE-2026-12617","CVE-2026-13321","UBUNTU-CVE-2026-10723","UBUNTU-CVE-2026-10822","UBUNTU-CVE-2026-11331","UBUNTU-CVE-2026-11605","UBUNTU-CVE-2026-11622","UBUNTU-CVE-2026-11721","UBUNTU-CVE-2026-12617","UBUNTU-CVE-2026-13321"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-8648-1"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-10723"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-10822"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-11331"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-11605"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-11622"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-11721"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-12617"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-13321"}],"affected":[{"package":{"name":"bind9","ecosystem":"Ubuntu:22.04:LTS","purl":"pkg:deb/ubuntu/bind9?arch=source&distro=jammy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:9.18.39-0ubuntu0.22.04.5"}]}],"versions":["1:9.16.15-1ubuntu1","1:9.16.15-1ubuntu2","1:9.16.15-1ubuntu3","1:9.18.0-2ubuntu1","1:9.18.0-2ubuntu2","1:9.18.0-2ubuntu3","1:9.18.1-1ubuntu1","1:9.18.1-1ubuntu1.1","1:9.18.1-1ubuntu1.2","1:9.18.1-1ubuntu1.3","1:9.18.12-0ubuntu0.22.04.1","1:9.18.12-0ubuntu0.22.04.2","1:9.18.12-0ubuntu0.22.04.3","1:9.18.18-0ubuntu0.22.04.1","1:9.18.18-0ubuntu0.22.04.2","1:9.18.24-0ubuntu0.22.04.1","1:9.18.28-0ubuntu0.22.04.1","1:9.18.30-0ubuntu0.22.04.1","1:9.18.30-0ubuntu0.22.04.2","1:9.18.39-0ubuntu0.22.04.1","1:9.18.39-0ubuntu0.22.04.2","1:9.18.39-0ubuntu0.22.04.3","1:9.18.39-0ubuntu0.22.04.4"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_name":"bind9","binary_version":"1:9.18.39-0ubuntu0.22.04.5"},{"binary_version":"1:9.18.39-0ubuntu0.22.04.5","binary_name":"bind9-dnsutils"},{"binary_version":"1:9.18.39-0ubuntu0.22.04.5","binary_name":"bind9-host"},{"binary_name":"bind9-libs","binary_version":"1:9.18.39-0ubuntu0.22.04.5"},{"binary_version":"1:9.18.39-0ubuntu0.22.04.5","binary_name":"bind9-utils"},{"binary_name":"bind9utils","binary_version":"1:9.18.39-0ubuntu0.22.04.5"},{"binary_name":"dnsutils","binary_version":"1:9.18.39-0ubuntu0.22.04.5"}]},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:22.04:LTS","cves":[{"id":"CVE-2026-10723","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2026-10822","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"},{"score":"medium","type":"Ubuntu"}]},{"severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"type":"Ubuntu","score":"medium"}],"id":"CVE-2026-11331"},{"severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"type":"Ubuntu","score":"medium"}],"id":"CVE-2026-11622"},{"id":"CVE-2026-11721","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2026-12617","severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2026-13321","severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N","type":"CVSS_V3"},{"type":"Ubuntu","score":"medium"}]}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8648-1.json"}},{"package":{"name":"bind9","ecosystem":"Ubuntu:24.04:LTS","purl":"pkg:deb/ubuntu/bind9?arch=source&distro=noble"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:9.18.39-0ubuntu0.24.04.6"}]}],"versions":["1:9.18.18-0ubuntu2","1:9.18.21-0ubuntu1","1:9.18.24-0ubuntu3","1:9.18.24-0ubuntu4","1:9.18.24-0ubuntu5","1:9.18.28-0ubuntu0.24.04.1","1:9.18.30-0ubuntu0.24.04.1","1:9.18.30-0ubuntu0.24.04.2","1:9.18.39-0ubuntu0.24.04.1","1:9.18.39-0ubuntu0.24.04.2","1:9.18.39-0ubuntu0.24.04.3","1:9.18.39-0ubuntu0.24.04.5"],"ecosystem_specific":{"binaries":[{"binary_version":"1:9.18.39-0ubuntu0.24.04.6","binary_name":"bind9"},{"binary_name":"bind9-dnsutils","binary_version":"1:9.18.39-0ubuntu0.24.04.6"},{"binary_name":"bind9-host","binary_version":"1:9.18.39-0ubuntu0.24.04.6"},{"binary_version":"1:9.18.39-0ubuntu0.24.04.6","binary_name":"bind9-libs"},{"binary_name":"bind9-utils","binary_version":"1:9.18.39-0ubuntu0.24.04.6"},{"binary_name":"bind9utils","binary_version":"1:9.18.39-0ubuntu0.24.04.6"},{"binary_name":"dnsutils","binary_version":"1:9.18.39-0ubuntu0.24.04.6"}],"availability":"No subscription required"},"database_specific":{"cves_map":{"cves":[{"id":"CVE-2026-10723","severity":[{"score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N","type":"CVSS_V3"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2026-10822","severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2026-11331","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2026-11622","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2026-11721","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"},{"type":"Ubuntu","score":"medium"}]},{"severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"type":"Ubuntu","score":"medium"}],"id":"CVE-2026-12617"},{"id":"CVE-2026-13321","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N"},{"score":"medium","type":"Ubuntu"}]}],"ecosystem":"Ubuntu:24.04:LTS"},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8648-1.json"}},{"package":{"name":"bind9","ecosystem":"Ubuntu:26.04:LTS","purl":"pkg:deb/ubuntu/bind9?arch=source&distro=resolute"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:9.20.24-1ubuntu0.2"}]}],"versions":["1:9.20.11-1ubuntu2","1:9.20.11-1ubuntu3","1:9.20.18-1ubuntu1","1:9.20.18-1ubuntu2","1:9.20.18-1ubuntu2.1","1:9.20.24-1ubuntu0.1"],"ecosystem_specific":{"binaries":[{"binary_version":"1:9.20.24-1ubuntu0.2","binary_name":"bind9"},{"binary_name":"bind9-dnsutils","binary_version":"1:9.20.24-1ubuntu0.2"},{"binary_name":"bind9-host","binary_version":"1:9.20.24-1ubuntu0.2"},{"binary_name":"bind9-libs","binary_version":"1:9.20.24-1ubuntu0.2"},{"binary_version":"1:9.20.24-1ubuntu0.2","binary_name":"bind9-utils"}],"availability":"No subscription required"},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:26.04:LTS","cves":[{"id":"CVE-2026-10723","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2026-10822","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"},{"score":"medium","type":"Ubuntu"}]},{"severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2026-11331"},{"id":"CVE-2026-11605","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2026-11622","severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"type":"Ubuntu","score":"medium"}]},{"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"},{"type":"Ubuntu","score":"medium"}],"id":"CVE-2026-11721"},{"id":"CVE-2026-12617","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},{"score":"medium","type":"Ubuntu"}]},{"severity":[{"score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2026-13321"}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8648-1.json"}}],"schema_version":"1.9.0"}