AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-5736

MEDIUM · CVSS 5.3 EPSS 18.02%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-01-16 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.3. Its EPSS score suggests a 18.0% probability of exploitation in the next 30 days.

CVE
CVE-2018-5736
Severity
MEDIUM
CVSS
5.3
EPSS
18.02%

Original NVD Description

An error in zone database reference counting can lead to an assertion failure if a server which is running an affected version of BIND attempts several transfers of a slave zone in quick succession. This defect could be deliberately exercised by an attacker who is permitted to cause a vulnerable server to initiate zone transfers (for example: by sending valid NOTIFY messages), causing the named process to exit after failing the assertion test. Affects BIND 9.12.0 and 9.12.1.

Related CVEs

Other vulnerabilities affecting the same vendor(s)