Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-40011

Опубликовано: 25 июн. 2026
Источник: nvd
CVSS3: 3.7
EPSS Низкий

Описание

An attacker sending a large number of crafted DNS queries might be able to trigger a dynamic block being inserted with a value causing invalid output to be produced in the prometheus endpoint. The prometheus endpoint will then be rejected by the scraper until the dynamic block expires.

EPSS

Процентиль: 5%
0.00153
Низкий

3.7 Low

CVSS3

Дефекты

CWE-116

Связанные уязвимости

CVSS3: 3.7
ubuntu
около 2 месяцев назад

An attacker sending a large number of crafted DNS queries might be able to trigger a dynamic block being inserted with a value causing invalid output to be produced in the prometheus endpoint. The prometheus endpoint will then be rejected by the scraper until the dynamic block expires.

CVSS3: 3.7
debian
около 2 месяцев назад

An attacker sending a large number of crafted DNS queries might be abl ...

CVSS3: 3.7
github
около 2 месяцев назад

An attacker sending a large number of crafted DNS queries might be able to trigger a dynamic block being inserted with a value causing invalid output to be produced in the prometheus endpoint. The prometheus endpoint will then be rejected by the scraper until the dynamic block expires.

suse-cvrf
13 дней назад

Security update for dnsdist

EPSS

Процентиль: 5%
0.00153
Низкий

3.7 Low

CVSS3

Дефекты

CWE-116