Disclosure summary
In specific circumstances, due to a weakness in the Pseudo Random Number Generator (PRNG) that is used, it is possible for an attacker to predict the source port and query ID that BIND will use. This issue affects BIND 9 versions 9.16.0 through 9.16.50, 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.16.8-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.
Source-reported weakness categories
CWE-341
Source-specific records & product guidance
Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.
NIST National Vulnerability Database · NVD-CVE-2025-40780
Open original source · Updated Oct 08, 2026
Only CPE matches marked vulnerable=true are indexed. AND/OR platform conditions must be checked in the original NVD record.
Microsoft Security Updates (CVRF) · 2025-Oct
Open original source · Updated Nov 24, 2025
Cache poisoning due to weak PRNG
Maximum of vendor-reported product scores; products and fixed builds are associations, not a universal affected-version statement.
Microsoft maximum product score: 8.6
| Vendor | Product / association | Version / bounds |
|---|---|---|
| Microsoft update guide | azl3 bind 9.20.15-1 on Azure Linux 3.0 | (MSRC status code 3) |
| Microsoft update guide | cbl2 bind 9.16.50-2 on CBL Mariner 2.0 | (MSRC status code 3) |
| Microsoft update guide | azl3 bind 9.20.11-1 on Azure Linux 3.0 | (MSRC status code 3) |
Vendor remediation references
- CBL-Mariner Releases · build 9.16.50-3 · product IDs 20589-17086
- Vendor guidance · product IDs 20589-17086
Original records & references
PUBLISHED 2025-10-22T12:15:42-04:00
MODIFIED 2026-10-08T07:10:00-04:00
INGESTED 2026-10-08T12:35:07-04:00