Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-33254

Опубликовано: 22 апр. 2026
Источник: debian
EPSS Низкий

Описание

An attacker can create a large number of concurrent DoQ or DoH3 connections, causing unlimited memory allocation in DNSdist and leading to a denial of service. DOQ and DoH3 are disabled by default.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dnsdistfixed2.0.4-1package
dnsdistend-of-lifebookwormpackage
dnsdistend-of-lifebullseyepackage

Примечания

  • https://www.dnsdist.org/security-advisories/powerdns-advisory-for-dnsdist-2026-04.html#cve-2026-33254-resource-exhaustion-via-doq-doh3-connections

EPSS

Процентиль: 30%
0.00371
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
4 месяца назад

An attacker can create a large number of concurrent DoQ or DoH3 connections, causing unlimited memory allocation in DNSdist and leading to a denial of service. DOQ and DoH3 are disabled by default.

CVSS3: 5.3
nvd
4 месяца назад

An attacker can create a large number of concurrent DoQ or DoH3 connections, causing unlimited memory allocation in DNSdist and leading to a denial of service. DOQ and DoH3 are disabled by default.

CVSS3: 5.3
github
4 месяца назад

An attacker can create a large number of concurrent DoQ or DoH3 connections, causing unlimited memory allocation in DNSdist and leading to a denial of service. DOQ and DoH3 are disabled by default.

suse-cvrf
около 2 месяцев назад

Security update for dnsdist

EPSS

Процентиль: 30%
0.00371
Низкий