Ghostwire

CVE-2026-33608: An attacker can send a notify request that causes a new secondary domain to be added to the bind backend, but causes...

HIGH CVSS 7.5

Published: April 22, 2026 | Last Modified: April 22, 2026

Description

An attacker can send a notify request that causes a new secondary domain to be added to the bind backend, but causes said backend to update its configuration to an invalid one, leading to the backend no longer able to run on the next restart, requiring manual operation to fix it.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (1 articles)

References