Back to all news
Security

BIND 9 Update Fixes 14 Flaws, Including an Unauthenticated Crash Over DNS-over-HTTPS

The Hacker News·September 17, 2026·1 min read
BIND 9 Update Fixes 14 Flaws, Including an Unauthenticated Crash Over DNS-over-HTTPS

The Internet Systems Consortium released BIND 9.20.29 and 9.21.26 to fix fourteen security flaws disclosed on 16 September in BIND 9. One flaw affects any BIND server answering DNS-over-HTTPS, allowing an unauthenticated sender to crash the named process with a single request carrying an invalid SIG. Administrators are urged to patch immediately to prevent denial-of-service attacks.

Read at The Hacker News
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store