Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-33596

Опубликовано: 22 апр. 2026
Источник: debian

Описание

A client might theoretically be able to cause a mismatch between queries sent to a backend and the received responses by sending a flood of perfectly timed queries that are routed to a TCP-only or DNS over TLS backend.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dnsdistfixed2.0.4-1package
dnsdistend-of-lifebookwormpackage
dnsdistend-of-lifebullseyepackage

Примечания

  • https://www.dnsdist.org/security-advisories/powerdns-advisory-for-dnsdist-2026-04.html#cve-2026-33596-tcp-backend-stream-id-overflow

Связанные уязвимости

CVSS3: 3.1
ubuntu
4 месяца назад

A client might theoretically be able to cause a mismatch between queries sent to a backend and the received responses by sending a flood of perfectly timed queries that are routed to a TCP-only or DNS over TLS backend.

CVSS3: 3.1
nvd
4 месяца назад

A client might theoretically be able to cause a mismatch between queries sent to a backend and the received responses by sending a flood of perfectly timed queries that are routed to a TCP-only or DNS over TLS backend.

CVSS3: 3.1
github
4 месяца назад

A client might theoretically be able to cause a mismatch between queries sent to a backend and the received responses by sending a flood of perfectly timed queries that are routed to a TCP-only or DNS over TLS backend.

suse-cvrf
около 2 месяцев назад

Security update for dnsdist