CVE-2014-8500: ISC BIND

High severity, CVSS 7.8. EPSS: 57.8% chance of exploitation in the next 30 days.

ISC BIND 9.0.x through 9.8.x, 9.9.0 through 9.9.6, and 9.10.0 through 9.10.1 does not limit delegation chaining, which allows remote attackers to cause a denial of service (memory consumption and named crash) via a large or infinite number of referrals.

Affected products

  • ISC BIND: version 9.0 only; version 9.0.1 only; version 9.1 only; version 9.1.1 only; version 9.1.2 only; version 9.1.3 only; …

Published 2014-12-11. Last modified 2026-06-17.