CVE-2026-3039 – BIND 9

CVSS 7.5 IMPORTANT

“DNS server weaknesses can disrupt trust, traffic, and availability across the business.”

ISC released patches for four high-severity vulnerabilities affecting BIND 9. CVE-2026-3039 has a CVSS score of 7.5, which is High severity. CVE-2026-3593 has a CVSS score of 7.4, which is High severity. CVE-2026-5946 has a CVSS score of 7.5, which is High severity. CVE-2026-5947 has a CVSS score of 7.5, which is High severity.

The update addresses resource management, memory safety, input handling, and race condition issues. Several vulnerabilities could allow remote code execution or privilege escalation, making this patch important for DNS infrastructure exposed to untrusted traffic.

Key Details

Affected Product
Isc Bind
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
CWE Classification
CWE-771
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.