Search CVE reports


Toggle filters

21 – 30 of 51 results


CVE-2023-50387

Medium priority

Some fixes available 29 of 48

Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue. One of...

7 affected packages

bind9, isc-dhcp, pdns-recursor, dnsmasq, unbound...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9 Fixed Fixed Fixed Fixed Fixed
isc-dhcp Needs evaluation Needs evaluation Not affected Not affected Not affected
pdns-recursor Not affected Not affected Needs evaluation Needs evaluation Needs evaluation
dnsmasq Fixed Fixed Fixed Fixed Fixed
unbound Fixed Fixed Fixed Fixed Needs evaluation
knot-resolver Not affected Not affected Needs evaluation Needs evaluation Needs evaluation
bind9-libs Not in release Not in release Needs evaluation Needs evaluation Not in release
Show all 7 packages Show less packages

CVE-2022-3204

Medium priority

Some fixes available 4 of 6

A vulnerability named 'Non-Responsive Delegation Attack' (NRDelegation Attack) has been discovered in various DNS resolving software. The NRDelegation Attack works by having a malicious delegation with a considerable number of non...

1 affected package

unbound

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unbound Not affected Not affected Fixed Fixed Fixed
Show less packages

CVE-2022-30699

Medium priority

Some fixes available 11 of 13

NLnet Labs Unbound, up to and including version 1.16.1, is vulnerable to a novel type of the "ghost domain names" attack. The vulnerability works by targeting an Unbound instance. Unbound is queried for a rogue domain name when...

1 affected package

unbound

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unbound Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2022-30698

Medium priority

Some fixes available 11 of 13

NLnet Labs Unbound, up to and including version 1.16.1 is vulnerable to a novel type of the "ghost domain names" attack. The vulnerability works by targeting an Unbound instance. Unbound is queried for a subdomain of a rogue...

1 affected package

unbound

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unbound Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2019-25042

Medium priority
Fixed

Unbound before 1.9.5 allows an out-of-bounds write via a compressed name in rdata_copy. NOTE: The vendor disputes that this is a vulnerability. Although the code may be vulnerable, a running Unbound installation cannot be remotely...

1 affected package

unbound

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unbound Not affected Not affected Fixed Fixed
Show less packages

CVE-2019-25041

Medium priority
Fixed

Unbound before 1.9.5 allows an assertion failure via a compressed name in dname_pkt_copy. NOTE: The vendor disputes that this is a vulnerability. Although the code may be vulnerable, a running Unbound installation cannot be...

1 affected package

unbound

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unbound Not affected Not affected Fixed Fixed
Show less packages

CVE-2019-25040

Medium priority
Fixed

Unbound before 1.9.5 allows an infinite loop via a compressed name in dname_pkt_copy. NOTE: The vendor disputes that this is a vulnerability. Although the code may be vulnerable, a running Unbound installation cannot be remotely...

1 affected package

unbound

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unbound Not affected Not affected Fixed Fixed
Show less packages

CVE-2019-25039

Medium priority
Fixed

Unbound before 1.9.5 allows an integer overflow in a size calculation in respip/respip.c. NOTE: The vendor disputes that this is a vulnerability. Although the code may be vulnerable, a running Unbound installation cannot be...

1 affected package

unbound

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unbound Not affected Not affected Fixed Fixed
Show less packages

CVE-2019-25038

Medium priority
Fixed

Unbound before 1.9.5 allows an integer overflow in a size calculation in dnscrypt/dnscrypt.c. NOTE: The vendor disputes that this is a vulnerability. Although the code may be vulnerable, a running Unbound installation cannot be...

1 affected package

unbound

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unbound Not affected Not affected Fixed Fixed
Show less packages

CVE-2019-25037

Medium priority
Fixed

Unbound before 1.9.5 allows an assertion failure and denial of service in dname_pkt_copy via an invalid packet. NOTE: The vendor disputes that this is a vulnerability. Although the code may be vulnerable, a running...

1 affected package

unbound

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unbound Not affected Not affected Fixed Fixed
Show less packages