CVE-2025-13878Disclosure

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Malformed BRID/HHIT records can cause `named` to terminate unexpectedly. This issue affects BIND 9 versions 9.18.40 through 9.18.43, 9.20.13 through 9.20.17, 9.21.12 through 9.21.16, 9.18.40-S1 through 9.18.43-S1, and 9.20.13-S1 through 9.20.17-S1.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-617CWE-1286

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 8 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 3 signals
  • Disclosure: 4 classified signals
  • General: 3 classified signals
  • Peaked 4d ago at 3 mentions (2026-01-29); latest day: 1
  • 8 total mentions across 5 days

Deep dive

Activity timeline8 mentions / 5d
01223Mentions · 2026-01-29: 3Mentions · 2026-01-30: 1Mentions · 2026-02-03: 1Mentions · 2026-02-07: 2Mentions · 2026-02-12: 1Patch / Workaround · 2026-02-07: 1Patch / Workaround · 2026-02-12: 1Technical Details · 2026-01-29: 1Technical Details · 2026-02-07: 201-2901-3002-0302-0702-12
Signal classification3 categories
Disclosure
450.0%
General
337.5%
Patch
112.5%
Referenced assets7 URLs
Classification over time
DateTotalLabels
2026-01-293
Disclosure1General2
2026-01-301
General1
2026-02-031
Disclosure1
2026-02-072
Disclosure1Patch1
2026-02-121
Disclosure1
Full discourse8 posts
  • Ferramentas Linux@Cezar_H_Linux
    Patch

    URGENT: #Fedora 42 BIND DNS security flaw (CVE-2025-13878) patched. DoS via corrupt BRID/HHIT records Read more: 👉 https://tinyurl.com/yhtadmte #Security https://t.co/DyKqxWhrwC

    Post summary

    The tweet announces that Fedora 42’s BIND DNS flaw CVE-2025-13878, a denial‑of‑service via corrupt BRID/HHIT records, has been patched.

    0001174
    1.3K followersView on X
  • iototsecnews@iototsecnews
    Disclosure

    BIND 9 の脆弱性 CVE-2025-13878 が FIX:named デーモンの不適切な処理とサービス拒否 https://iototsecnews.jp/2026/01/22/bind-9-vulnerability-allow-attackers-to-crash-server-by-sending-malicious-records/ インターネットの基盤であるドメイン名解決を担う BIND 9 に、サーバを強制停止させられる深刻な脆弱性 CVE-2025-13878 が発見されました。この問題の原因は、特定の形式(BRID レコードや HHIT レコード)をした不正なデータを受け取った際に、BIND 9 の核となる named デーモンが処理に失敗し、予期せず終了してしまう点にあります。 この脆弱性は、権威 DNS サーバとキャッシュ DNS リゾルバの両方に影響を及ぼします。攻撃者がネットワーク経由で細工したパケットを 1 つ送信するだけで、特別な権限やユーザーの操作を必要とせずにサービスを完全に停止させることが可能です。CVSS スコアは 7.5 (High) と高く、インターネット・インフラの安定性を大きく揺るがすリスクとして警戒されています。ご利用のチームはご注意ください。 #BIND9 #CVE202513878 #Vulnerability

    Post summary

    The post announces the discovery of a high‑risk DoS vulnerability in BIND 9 (CVE‑2025‑13878), detailing the affected record types and CVSS score, but provides no PoC, exploit, or patch information.

    01000132
    485 followersView on X
  • サクラ先輩とモモちゃん@itexam2005
    Disclosure

    【BIND 9】誰でもサーバーを落とせる?新脆弱性CVE 2025 13878の脅威と対策 ‐サクラ先輩とももちゃんの『DNSを守れ!緊急BIND 9アップデート作戦」CVE-2025-13878🧐 https://www.youtube.com/watch?v=WjHXNJEg464 本動画では、サクラ先輩とももちゃんの二人が、2026年1月に公開されたBIND 9の緊急脆弱性CVE-2025-13878について分かりやす…

    Post summary

    The video introduces the newly disclosed BIND 9 vulnerability CVE‑2025‑13878 and stresses the need for an urgent patch.

    00000126
    256 followersView on X
  • Ferramentas Linux@Cezar_H_Linux
    Disclosure

    🚨 CRITICAL: #Fedora 42 bind-dyndb-ldap vulnerability (CVE-2025-13878) allows DNS privilege escalation via LDAP. If you're running BIND with directory service integration: Read more: 👉 https://tinyurl.com/2ewfr5pu #Security https://t.co/0xz5hAKwzy

    Post summary

    Fedora 42’s bind‑dyndb‑ldap vulnerability (CVE‑2025‑13878) is described as critical, enabling DNS privilege escalation via LDAP; further details are available through a provided link.

    00000103
    1.3K followersView on X
  • CERT-PY@CERTpy
    Disclosure

    ⚠️ Vulnerabilidad en productos BIND ❗ CVE-2025-13878 ➡️ Más info: https://www.cert.gov.py/vulnerabilidad-en-productos-bind/ https://t.co/ar1r7DKabY

    Post summary

    The post announces a new BIND vulnerability (CVE-2025-13878) and directs readers to additional information, but provides no details on exploitation, patches, or technical specifics.

    0000099
    6.6K followersView on X
  • Stuart 🇨🇷@stooee_
    General

    After analyzing 60% of vulnerabilities from past week, CVE-2025-13878 has 12 articles published from different internet sources, no other cve has these many articles. More information here: https://cves.st00ee.com/ #vulnerability #CyberSecurity #ThreatIntel #CVE #SecurityAlert

    Post summary

    The tweet notes that CVE-2025-13878 has attracted an unusually high number of articles, but it provides no technical, exploit, or mitigation details.

    0000079
    73 followersView on X
  • Stuart 🇨🇷@stooee_
    General

    After analyzing 48% of vulnerabilities from past week, CVE-2025-13878 has 11 articles published from different internet sources, no other cve has these many articles. More information here: https://cves.st00ee.com/ #vulnerability #CyberSecurity #ThreatIntel #CVE #SecurityAlert

    Post summary

    The tweet highlights CVE-2025-13878’s high attention, noting 11 published articles, and directs readers to a CVE aggregator for further information.

    0000073
    73 followersView on X
  • Angel Alejos@AlejosAngel
    General

    Descubre la vulnerabilidad CVE-2025-13878 y cómo afecta la seguridad. Más info aquí: https://kb.isc.org/docs/cve-2025-13878 #Ciberseguridad #Vulnerabilidades

    Post summary

    The tweet mentions CVE-2025-13878 but provides no substantive details about exploitation, patching, or technical aspects beyond a generic article link.

    0000049
    604 followersView on X

Explore more