Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3xrf-3v7w-582w

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Unbound before 1.3.4 does not properly verify signatures for NSEC3 records, which allows remote attackers to cause secure delegations to be downgraded via DNS spoofing or other DNS-related attacks in conjunction with crafted delegation responses.

Unbound before 1.3.4 does not properly verify signatures for NSEC3 records, which allows remote attackers to cause secure delegations to be downgraded via DNS spoofing or other DNS-related attacks in conjunction with crafted delegation responses.

EPSS

Процентиль: 82%
0.01644
Низкий

Связанные уязвимости

ubuntu
около 16 лет назад

Unbound before 1.3.4 does not properly verify signatures for NSEC3 records, which allows remote attackers to cause secure delegations to be downgraded via DNS spoofing or other DNS-related attacks in conjunction with crafted delegation responses.

nvd
около 16 лет назад

Unbound before 1.3.4 does not properly verify signatures for NSEC3 records, which allows remote attackers to cause secure delegations to be downgraded via DNS spoofing or other DNS-related attacks in conjunction with crafted delegation responses.

debian
около 16 лет назад

Unbound before 1.3.4 does not properly verify signatures for NSEC3 rec ...

EPSS

Процентиль: 82%
0.01644
Низкий