Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rgx8-jrmw-j2jr

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

XACK DNS 1.11.0 to 1.11.4, 1.10.0 to 1.10.8, 1.8.0 to 1.8.23, 1.7.0 to 1.7.18, and versions before 1.7.0 allow remote attackers to cause a denial of service condition resulting in degradation of the recursive resolver's performance or compromising the recursive resolver as a reflector in a reflection attack.

XACK DNS 1.11.0 to 1.11.4, 1.10.0 to 1.10.8, 1.8.0 to 1.8.23, 1.7.0 to 1.7.18, and versions before 1.7.0 allow remote attackers to cause a denial of service condition resulting in degradation of the recursive resolver's performance or compromising the recursive resolver as a reflector in a reflection attack.

EPSS

Процентиль: 76%
0.00979
Низкий

Связанные уязвимости

CVSS3: 7.5
nvd
больше 5 лет назад

XACK DNS 1.11.0 to 1.11.4, 1.10.0 to 1.10.8, 1.8.0 to 1.8.23, 1.7.0 to 1.7.18, and versions before 1.7.0 allow remote attackers to cause a denial of service condition resulting in degradation of the recursive resolver's performance or compromising the recursive resolver as a reflector in a reflection attack.

CVSS3: 8.6
fstec
больше 5 лет назад

Уязвимость DNS-сервера XACK DNS, вызванная неконтролируемой рекурсией, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 76%
0.00979
Низкий