Source: Ministry of education information & communication security contingency platform
"" "" ""
| Publication Number | TACERT-ANA-2026041002043535 | Publication Time | 2026/04/10 14:12 |
| Incident Type | ANA-Vulnerability Alert | Discovery Time | 2026/04/10 14:12 |
| Impact Level | Low | ||
| [Subject] 【Vulnerability Alert】 FortiClient EMS Contains High-Risk Security Vulnerabilities (CVE-2026-21643 and CVE-2026-35616); Please Confirm and Apply the Patch as Soon as Possible |
|||
| [Content] Forwarded from TWCERTCC-200-202407-00000002 Recently, Internet Systems Consortium (ISC) issued a critical security advisory for BIND (CVE-2026-3104, CVSS: 7.5). This vulnerability may cause a memory leak in the BIND resolver through a specially crafted domain name. (Information Sharing Level: WHITE (Information content can be publicly disclosed) |
|||
| [Affected Platform] BIND versions 9.20.0 to 9.20.20 BIND versions 9.21.0 to 9.21.19 BIND versions 9.20.9-S1 to 9.20.20-S1 |
|||
| [Recommended Actions]
Please apply the remediation according to the solution released on the official website: https://kb.isc.org/docs/cve-2026-3104 |
|||
| [Reference] https://www.twcert.org.tw/tw/cp-169-10818-cb2ee-1.html |
|||