Medium severity5.3NVD Advisory· Published Oct 27, 2021· Updated Jun 17, 2026
CVE-2021-25219
CVE-2021-25219
Description
In BIND 9.3.0 -> 9.11.35, 9.12.0 -> 9.16.21, and versions 9.9.3-S1 -> 9.11.35-S1 and 9.16.8-S1 -> 9.16.21-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.18 of the BIND 9.17 development branch, exploitation of broken authoritative servers using a flaw in response processing can cause degradation in BIND resolver performance. The way the lame cache is currently designed makes it possible for its internal data structures to grow almost infinitely, which may cause significant delays in client query processing.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
93cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:*+ 23 more
- cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:*range: >=9.3.0,<9.11.36
- cpe:2.3:a:isc:bind:9.10.5:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.10.7:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.12:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.21:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.27:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.29:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.35:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.3:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.5:s3:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.5:s5:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.5:s6:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.6:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.7:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.11.8:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.16.11:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.16.13:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.16.21:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.16.8:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.9.12:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.9.13:s1:*:*:supported_preview:*:*:*
- cpe:2.3:a:isc:bind:9.9.3:s1:*:*:supported_preview:*:*:*
- (no CPE)range: 9.3.0 -> 9.11.35, 9.12.0 -> 9.16.21, 9.9.3-S1 -> 9.11.35-S1, 9.16.8-S1 -> 9.16.21-S1, 9.17.0 -> 9.17.18
- (no CPE)range: Open Source Branches 9.3 through 9.11 9.3.0 through versions before 9.11.36
- cpe:2.3:a:netapp:cloud_backup:-:*:*:*:*:*:*:*
cpe:2.3:a:oracle:http_server:12.2.1.3.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:oracle:http_server:12.2.1.3.0:*:*:*:*:*:*:*
- cpe:2.3:a:oracle:http_server:12.2.1.4.0:*:*:*:*:*:*:*
- cpe:2.3:a:oracle:zfs_storage_appliance_kit:8.8:*:*:*:*:*:*:*
- cpe:2.3:a:siemens:sinec_infrastructure_network_services:*:*:*:*:*:*:*:*Range: <1.0.1.1
cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h300e_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h300s_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h410c_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h410s_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h500e_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h500s_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h700e_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h700s_firmware:-:*:*:*:*:*:*:*
- Range: 9.17.0 -> 9.17.18
- Range: 9.9.3-S1 -> 9.11.35-S1, 9.16.8-S1 -> 9.16.21-S1
- osv-coords48 versionspkg:apk/chainguard/bindpkg:apk/chainguard/bind-devpkg:apk/chainguard/bind-dnssec-rootpkg:apk/chainguard/bind-dnssec-toolspkg:apk/chainguard/bind-docpkg:apk/chainguard/bind-libspkg:apk/chainguard/bind-pluginspkg:apk/chainguard/bind-toolspkg:apk/wolfi/bindpkg:apk/wolfi/bind-devpkg:apk/wolfi/bind-dnssec-rootpkg:apk/wolfi/bind-dnssec-toolspkg:apk/wolfi/bind-docpkg:apk/wolfi/bind-libspkg:apk/wolfi/bind-pluginspkg:apk/wolfi/bind-toolspkg:rpm/almalinux/bindpkg:rpm/almalinux/bind-chrootpkg:rpm/almalinux/bind-develpkg:rpm/almalinux/bind-export-develpkg:rpm/almalinux/bind-export-libspkg:rpm/almalinux/bind-libspkg:rpm/almalinux/bind-libs-litepkg:rpm/almalinux/bind-licensepkg:rpm/almalinux/bind-lite-develpkg:rpm/almalinux/bind-pkcs11pkg:rpm/almalinux/bind-pkcs11-develpkg:rpm/almalinux/bind-pkcs11-libspkg:rpm/almalinux/bind-pkcs11-utilspkg:rpm/almalinux/bind-sdbpkg:rpm/almalinux/bind-sdb-chrootpkg:rpm/almalinux/bind-utilspkg:rpm/almalinux/python3-bindpkg:rpm/opensuse/bind&distro=openSUSE%20Leap%2015.2pkg:rpm/opensuse/bind&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/bind&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/bind&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/htmldoc&distro=openSUSE%20Leap%2015.3pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP2pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP4pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015%20SP2pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015%20SP3pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015%20SP4pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/htmldoc&distro=SUSE%20Package%20Hub%2015%20SP3
< 0+ 47 more
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 32:9.11.36-3.el8
- (no CPE)range: < 9.16.6-lp152.14.25.1
- (no CPE)range: < 9.16.6-12.57.1
- (no CPE)range: < 9.16.31-150400.5.6.1
- (no CPE)range: < 9.16.20-3.1
- (no CPE)range: < 1.9.12-bp153.2.15.1
- (no CPE)range: < 9.16.6-12.57.1
- (no CPE)range: < 9.16.6-150300.22.13.1
- (no CPE)range: < 9.16.31-150400.5.6.1
- (no CPE)range: < 9.16.6-12.57.1
- (no CPE)range: < 9.16.6-150300.22.13.1
- (no CPE)range: < 9.16.31-150400.5.6.1
- (no CPE)range: < 9.11.22-3.37.1
- (no CPE)range: < 9.11.22-3.37.1
- (no CPE)range: < 9.11.22-3.37.1
- (no CPE)range: < 1.9.12-bp153.2.15.1
Patches
Vulnerability mechanics
References
10- cert-portal.siemens.com/productcert/pdf/ssa-389290.pdfnvdPatchThird Party Advisory
- kb.isc.org/v1/docs/cve-2021-25219nvdVendor Advisory
- lists.debian.org/debian-lts-announce/2021/11/msg00001.htmlnvdMailing ListThird Party Advisory
- security.gentoo.org/glsa/202210-25nvdThird Party Advisory
- security.netapp.com/advisory/ntap-20211118-0002/nvdThird Party Advisory
- www.debian.org/security/2021/dsa-4994nvdThird Party Advisory
- www.oracle.com/security-alerts/cpuapr2022.htmlnvdThird Party Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EF4NAVRV4H3W4GA3LGGZYUKD3HSJBAVW/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YGV7SA27CTYLGFJSPUM3V36ZWK7WWDI4/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YTKC4E3HUOLYN5IA4EBL4VAQSWG2ZVTX/nvd
News mentions
0No linked articles in our index yet.