Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9f7v-8m4p-pv76

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

knot-resolver before version 4.3.0 is vulnerable to denial of service through high CPU utilization. DNS replies with very many resource records might be processed very inefficiently, in extreme cases taking even several CPU seconds for each such uncached message. For example, a few thousand A records can be squashed into one DNS message (limit is 64kB).

knot-resolver before version 4.3.0 is vulnerable to denial of service through high CPU utilization. DNS replies with very many resource records might be processed very inefficiently, in extreme cases taking even several CPU seconds for each such uncached message. For example, a few thousand A records can be squashed into one DNS message (limit is 64kB).

EPSS

Процентиль: 65%
0.00489
Низкий

7.5 High

CVSS3

Дефекты

CWE-404
CWE-407

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 6 лет назад

knot-resolver before version 4.3.0 is vulnerable to denial of service through high CPU utilization. DNS replies with very many resource records might be processed very inefficiently, in extreme cases taking even several CPU seconds for each such uncached message. For example, a few thousand A records can be squashed into one DNS message (limit is 64kB).

CVSS3: 7.5
nvd
около 6 лет назад

knot-resolver before version 4.3.0 is vulnerable to denial of service through high CPU utilization. DNS replies with very many resource records might be processed very inefficiently, in extreme cases taking even several CPU seconds for each such uncached message. For example, a few thousand A records can be squashed into one DNS message (limit is 64kB).

CVSS3: 7.5
debian
около 6 лет назад

knot-resolver before version 4.3.0 is vulnerable to denial of service ...

EPSS

Процентиль: 65%
0.00489
Низкий

7.5 High

CVSS3

Дефекты

CWE-404
CWE-407