Search CVE reports
41 – 50 of 75 results
Some fixes available 8 of 11
The DNS protocol in RFC 1035 and updates allows remote attackers to cause a denial of service (resource consumption) by arranging for DNS queries to be accumulated for seconds, such that responses are later sent in a pulsing burst...
1 affected package
unbound
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| unbound | Fixed | Fixed | Fixed | Fixed | Needs evaluation |
NLnet Labs Unbound version 1.18.0 up to and including version 1.19.1 contain a vulnerability that can cause denial of service by a certain code path that can lead to an infinite loop. Unbound 1.18.0 introduced a feature that...
1 affected package
unbound
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| unbound | — | Fixed | Not affected | Not affected | Not affected |
A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration. If a process can connect over localhost to port 8953, it can...
1 affected package
unbound
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| unbound | — | Not affected | Not affected | Not affected | Not affected |
Some fixes available 29 of 48
The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in a random...
7 affected packages
isc-dhcp, bind9, bind9-libs, dnsmasq, knot-resolver...
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| isc-dhcp | Needs evaluation | Needs evaluation | Not affected | Not affected | Not affected |
| bind9 | Fixed | Fixed | Fixed | Fixed | Fixed |
| bind9-libs | Not in release | Not in release | Needs evaluation | Needs evaluation | Not in release |
| dnsmasq | Fixed | Fixed | Fixed | Fixed | Fixed |
| knot-resolver | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
| pdns-recursor | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
| unbound | Fixed | Fixed | Fixed | Fixed | Needs evaluation |
Some fixes available 29 of 48
Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue. One of...
7 affected packages
isc-dhcp, bind9, bind9-libs, dnsmasq, knot-resolver...
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| isc-dhcp | Needs evaluation | Needs evaluation | Not affected | Not affected | Not affected |
| bind9 | Fixed | Fixed | Fixed | Fixed | Fixed |
| bind9-libs | Not in release | Not in release | Needs evaluation | Needs evaluation | Not in release |
| dnsmasq | Fixed | Fixed | Fixed | Fixed | Fixed |
| knot-resolver | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
| pdns-recursor | Not affected | Not affected | Needs evaluation | Needs evaluation | Needs evaluation |
| unbound | Fixed | Fixed | Fixed | Fixed | Needs evaluation |
Some fixes available 4 of 6
A vulnerability named 'Non-Responsive Delegation Attack' (NRDelegation Attack) has been discovered in various DNS resolving software. The NRDelegation Attack works by having a malicious delegation with a considerable number of non...
1 affected package
unbound
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| unbound | Not affected | Not affected | Fixed | Fixed | Fixed |
Some fixes available 11 of 13
NLnet Labs Unbound, up to and including version 1.16.1, is vulnerable to a novel type of the "ghost domain names" attack. The vulnerability works by targeting an Unbound instance. Unbound is queried for a rogue domain name when...
1 affected package
unbound
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| unbound | Fixed | Fixed | Fixed | Fixed | Fixed |
Some fixes available 11 of 13
NLnet Labs Unbound, up to and including version 1.16.1 is vulnerable to a novel type of the "ghost domain names" attack. The vulnerability works by targeting an Unbound instance. Unbound is queried for a subdomain of a rogue...
1 affected package
unbound
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| unbound | Fixed | Fixed | Fixed | Fixed | Fixed |
Unbound before 1.9.5 allows an out-of-bounds write via a compressed name in rdata_copy. NOTE: The vendor disputes that this is a vulnerability. Although the code may be vulnerable, a running Unbound installation cannot be remotely...
1 affected package
unbound
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| unbound | — | Not affected | Not affected | Fixed | Fixed |
Unbound before 1.9.5 allows an assertion failure via a compressed name in dname_pkt_copy. NOTE: The vendor disputes that this is a vulnerability. Although the code may be vulnerable, a running Unbound installation cannot be...
1 affected package
unbound
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| unbound | — | Not affected | Not affected | Fixed | Fixed |