Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gf7x-hg8h-x3gf

Опубликовано: 14 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

A flow has been identified into dnssec.c library, causing an infinite loop to dnsmasq service. An attacker who controls any DNSSEC-signed zone can hang the dnsmasq process with a single crafted response, killing all DNS resolution for its clients.

A flow has been identified into dnssec.c library, causing an infinite loop to dnsmasq service. An attacker who controls any DNSSEC-signed zone can hang the dnsmasq process with a single crafted response, killing all DNS resolution for its clients.

EPSS

Процентиль: 1%
0.00103
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 4.4
ubuntu
27 дней назад

A flow has been identified into dnssec.c library, causing an infinite loop to dnsmasq service. An attacker who controls any DNSSEC-signed zone can hang the dnsmasq process with a single crafted response, killing all DNS resolution for its clients.

CVSS3: 4.4
redhat
3 месяца назад

A flow has been identified into dnssec.c library, causing an infinite loop to dnsmasq service. An attacker who controls any DNSSEC-signed zone can hang the dnsmasq process with a single crafted response, killing all DNS resolution for its clients.

CVSS3: 4.4
nvd
27 дней назад

A flow has been identified into dnssec.c library, causing an infinite loop to dnsmasq service. An attacker who controls any DNSSEC-signed zone can hang the dnsmasq process with a single crafted response, killing all DNS resolution for its clients.

msrc
21 день назад

Dnsmasq: infinite loop dos in dnssec nsec/nsec3 type bitmap parsing

CVSS3: 4.4
debian
27 дней назад

A flow has been identified into dnssec.c library, causing an infinite ...

EPSS

Процентиль: 1%
0.00103
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-835