THREAT OPS › Threat News › ISC has disclosed fourteen vulnerabilities in BIND 9 (CVE-2026-19033, CVE-2026-19662, CVE-2026-19666, CVE-2026-19667, CVE-2026-19668, CVE-2026-19941, CVE-2026-75029, CVE-2026-76163, CVE-2026-77119, CVE-2026-77692, CVE-2026-78301, CVE-2026-80274, CVE-2026-81563, CVE-2026-81736)
ISC has disclosed fourteen vulnerabilities in BIND 9 (CVE-2026-19033, CVE-2026-19662, CVE-2026-19666, CVE-2026-19667, CVE-2026-19668, CVE-2026-19941, CVE-2026-75029, CVE-2026-76163, CVE-2026-77119, CVE-2026-77692, CVE-2026-78301, CVE-2026-80274, CVE-2026-81563, CVE-2026-81736)
<p>Posted by Nicki Křížek on Sep 16</p>On 16 September 2026, Internet Systems Consortium disclosed fourteen vulnerabilities affecting our BIND 9 software:<br /> <br /> - CVE-2026-19033: Unauthenticated IXFR deltas are applied to the live zone before TSIG verification <br /> <a href="https://kb.isc.org/docs/cve-2026-19033" rel="nofollow">https://kb.isc.org/docs/cve-2026-19033</a><br /> - CVE-
MITRE ATT&CK techniques
- VulnerabilitiesT1588.006
Indicators of compromise
- CVE-2026-19033cve
- CVE-2026-19662cve
- CVE-2026-19666cve
- CVE-2026-19667cve
- CVE-2026-19668cve
- CVE-2026-19941cve
- CVE-2026-75029cve
- CVE-2026-76163cve
- CVE-2026-77119cve
- CVE-2026-77692cve
- CVE-2026-78301cve
- CVE-2026-80274cve
- CVE-2026-81563cve
- CVE-2026-81736cve
- https://kb.isc.org/docs/cve-2026-19033url
- https://kb.isc.org/docs/cve-2026-19662url
Original source: https://seclists.org/oss-sec/2026/q3/801