Описание
Knot Resolver before 5.3.2 is prone to an assertion failure, triggerable by a remote attacker in an edge case (NSEC3 with too many iterations used for a positive wildcard proof).
Ссылки
- PatchThird Party Advisory
- PatchThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 5.3.2 (исключая)
cpe:2.3:a:nic:knot_resolver:*:*:*:*:*:*:*:*
EPSS
Процентиль: 74%
0.0084
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-617
Связанные уязвимости
CVSS3: 7.5
ubuntu
больше 4 лет назад
Knot Resolver before 5.3.2 is prone to an assertion failure, triggerable by a remote attacker in an edge case (NSEC3 with too many iterations used for a positive wildcard proof).
CVSS3: 7.5
debian
больше 4 лет назад
Knot Resolver before 5.3.2 is prone to an assertion failure, triggerab ...
github
больше 3 лет назад
Knot Resolver before 5.3.2 is prone to an assertion failure, triggerable by a remote attacker in an edge case (NSEC3 with too many iterations used for a positive wildcard proof).
EPSS
Процентиль: 74%
0.0084
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-617