#VU124614 Improper Check or Handling of Exceptional Conditions in ISC BIND - CVE-2026-3119
Published: March 25, 2026
ISC BIND
ISC
Description
The vulnerability allows a remote user to cause a denial of service.
The vulnerability exists due to improper handling of TKEY records in the DNS query processing component when processing a signed query containing a TKEY record. A remote user can send a specially crafted, correctly signed query containing a TKEY record to cause named to terminate unexpectedly.
Successful exploitation requires that the attacker possesses a valid TSIG key configured in the target's named configuration. Both authoritative servers and resolvers are affected.