CVE-2012-3868: ISC BIND

Medium severity, CVSS 4.3. EPSS: 2.7% chance of exploitation in the next 30 days.

Race condition in the ns_client structure management in ISC BIND 9.9.x before 9.9.1-P2 allows remote attackers to cause a denial of service (memory consumption or process exit) via a large volume of TCP queries.

Affected products

  • ISC BIND: version 9.9.0 only; version 9.9.1 only

Published 2012-07-25. Last modified 2026-06-16.