CVE-2026-3592: Amplification vulnerabilities via self-pointed glue records
BIND resolvers are vulnerable to an amplified resource consumption/exhaustion attack. If a victim resolver makes a query to a specially crafted zone, the resolver will consume disproportionate resources. This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.48, 9.20.0 through 9.20.22, 9.21.0 through 9.21.21, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.48-S1, and 9.20.9-S1 through 9.20.22-S1.
Affected Software
Remediation
Information
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3592?
CVE-2026-3592 is categorized as a moderate severity vulnerability affecting BIND 9 resolvers.
How do I fix CVE-2026-3592?
To fix CVE-2026-3592, upgrade to a non-vulnerable version of BIND 9, specifically versions beyond 9.16.50, 9.18.48, 9.20.22, or 9.21.21.
What systems are impacted by CVE-2026-3592?
CVE-2026-3592 affects ISC BIND 9 versions ranging from 9.11.0 to 9.16.50 and from 9.18.0 to 9.18.48, as well as several other specific releases.
What type of attack does CVE-2026-3592 enable?
CVE-2026-3592 enables amplification resource consumption and exhaustion attacks on BIND 9 DNS resolvers.
Is there a public exploit available for CVE-2026-3592?
As of now, there are no known public exploits available for CVE-2026-3592, but the vulnerability should be treated seriously due to its potential impact.