Bind

Vendor:

First CVE: Jul 1, 1997 · Active for 29 years

184
Total CVEs
More Total CVEs than 99% of tracked products
6.8
Avg CVEs / Year
Higher CVE frequency than 92% of tracked products
6.6
Avg CVSS
Higher Avg CVSS than 32% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Bind over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jul 1, 1997
29 years ago
Most Recent CVE
May 20, 2026
65 days ago

CVE Severity & Scoring

Bind184 CVEs
All CVEs352,231 CVEs
LowMediumHighCritical
Attack Vector
Local2 (1.1%)
Network97 (52.7%)
Unknown84 (45.7%)
Physical0 (0.0%)
Adjacent Network1 (0.5%)
Attack Complexity
Low82 (44.6%)
High18 (9.8%)
Unknown84 (45.7%)
User Interaction
None100 (54.3%)
Unknown84 (45.7%)
Required0 (0.0%)
Privileges Required
Low12 (6.5%)
High4 (2.2%)
None84 (45.7%)
Unknown84 (45.7%)

Top CVEs

Signals from CVEs in this product scope (184 CVEs).

184 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
buffer.c in named in ISC BIND 9 before 9.9.9-P3, 9.10.x before 9.10.4-P3, and 9.11.x before 9.11.0rc3 does not properly construct responses, which allows remote attackers to cause
Sep 28, 20167.587NOYES
named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via TKEY queries.
Jul 29, 20157.887NOYES
The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; an
Jul 8, 20086.887NOYES
Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an inconsistent state if the attacker knows (or successfully guesses) the name of a TSIG
May 19, 20205.985NOYES
Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more D
Feb 14, 20247.578NONO
In BIND 9.5.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.11.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND Supported Preview Edition, as well as release versions 9.
Apr 29, 20219.876NONO
The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-
Feb 14, 20247.572NONO
BIND servers are vulnerable if they are running an affected version and are configured to use GSS-TSIG features. In a configuration which uses BIND's default settings the vulnerabl
Feb 17, 20218.162NONO
ISC BIND 9.x before 9.9.9-P2, 9.10.x before 9.10.4-P2, and 9.11.x before 9.11.0b2, when lwresd or the named lwres option is enabled, allows remote attackers to cause a denial of se
Jul 19, 20165.959NONO
Buffer overflow in transaction signature (TSIG) handling code in BIND 8 allows remote attackers to gain root privileges.
Feb 12, 200110.059NOYES

Exploit Exposure

Signals from CVEs in this product scope (184 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
5 CVEs
2.7% of CVEs· 96th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
15 CVEs
8.2% of CVEs· 88th percentile

Social Chatter

Signals from CVEs in this product scope (184 CVEs).

Media Mentions

Signals from CVEs in this product scope (184 CVEs).

Top CNAs Publishing CVEs For Bind

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
9.9.9106.628.9%00
9.9.8106.927.2%00
9.9.746.431.2%00
9.9.656.533.0%00
9.9.556.635.4%00
9.9.475.030.9%00
9.9.3286.623.2%01
9.9.2107.129.1%00
9.9.1396.813.5%00
9.9.12106.913.1%00
9.9.1117.527.7%00
9.9.1075.810.1%00
9.9.1167.225.6%00
9.9.0207.023.7%00
9.8.685.630.7%00
9.8.5106.227.9%00
9.8.4116.629.9%00
9.8.3157.027.3%00
9.8.2157.027.8%00
9.8.1206.625.8%00