The Internet Systems Consortium ISC has released BIND 9.20.29 and 9.21.26 to fix fourteen security flaws it disclosed on 16 September in BIND 9, its opensource DNS server software. One of them affects any BIND server that answers DNSoverHTTPS DoH. A sender with no credentials can crash the server process, named, with a single request that carries an invalid SIG.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity