﻿id	summary	reporter	owner	description	type	status	priority	milestone	component	version	severity	resolution	keywords	cc
19302	bind9 bind 9.18.24	Douglas R. Reno	Rahul Chandra	"New point version

This contains security fixes for a protocol-level security vulnerability in DNSSEC.

- CVE-2023-4408:        Parsing large DNS messages may cause excessive CPU load https://kb.isc.org/docs/cve-2023-4408
- CVE-2023-5517:        Querying RFC 1918 reverse zones may cause an assertion failure when ""nxdomain-redirect"" is enabled https://kb.isc.org/docs/cve-2023-5517
- CVE-2023-5679:        Enabling both DNS64 and serve-stale may cause an assertion failure during recursive resolution https://kb.isc.org/docs/cve-2023-5679
- CVE-2023-6516:        Specific recursive query patterns may lead to an out-of-memory condition https://kb.isc.org/docs/cve-2023-6516
- CVE-2023-50387:       KeyTrap - Extreme CPU consumption in DNSSEC validator https://kb.isc.org/docs/cve-2023-50387
- CVE-2023-50868:       Preparing an NSEC3 closest encloser proof can exhaust CPU resources https://kb.isc.org/docs/cve-2023-50868
"	enhancement	closed	elevated	12.1	BOOK	git	medium	fixed		
