Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-26249

Опубликовано: 21 фев. 2023
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

Knot Resolver before 5.6.0 enables attackers to consume its resources, launching amplification attacks and potentially causing a denial of service. Specifically, a single client query may lead to a hundred TCP connection attempts if a DNS server closes connections without providing a response.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:nic:knot_resolver:*:*:*:*:*:*:*:*
Версия до 5.6.0 (исключая)

EPSS

Процентиль: 52%
0.00291
Низкий

7.5 High

CVSS3

Дефекты

CWE-770
CWE-770

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 3 года назад

Knot Resolver before 5.6.0 enables attackers to consume its resources, launching amplification attacks and potentially causing a denial of service. Specifically, a single client query may lead to a hundred TCP connection attempts if a DNS server closes connections without providing a response.

CVSS3: 7.5
debian
почти 3 года назад

Knot Resolver before 5.6.0 enables attackers to consume its resources, ...

CVSS3: 7.5
github
почти 3 года назад

Knot Resolver before 5.6.0 enables attackers to consume its resources, launching amplification attacks and potentially causing a denial of service. Specifically, a single client query may lead to a hundred TCP connection attempts if a DNS server closes connections without providing a response.

EPSS

Процентиль: 52%
0.00291
Низкий

7.5 High

CVSS3

Дефекты

CWE-770
CWE-770