CVE-2023-26249
EUVD-2023-3007321.02.2023, 02:15
Knot Resolver before 5.6.0 enables attackers to consume its resources, launching amplification attacks and potentially causing a denial of service. Specifically, a single client query may lead to a hundred TCP connection attempts if a DNS server closes connections without providing a response.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| nic | knot_resolver | 𝑥 < 5.6.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases