Описание
A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration. If a process can connect over localhost to port 8953, it can alter the configuration of unbound.service. This flaw allows an unprivileged attacker to manipulate a running instance, potentially altering forwarders, allowing them to track all queries forwarded by the local resolver, and, in some cases, disrupting resolving altogether.
| Релиз | Статус | Примечание | 
|---|---|---|
| bionic | ignored  | end of standard support | 
| devel | not-affected  | |
| esm-infra-legacy/trusty | not-affected  | |
| esm-infra/bionic | not-affected  | |
| esm-infra/focal | not-affected  | |
| esm-infra/xenial | not-affected  | |
| focal | not-affected  | |
| jammy | not-affected  | |
| mantic | not-affected  | |
| noble | not-affected  | 
Показывать по
8 High
CVSS3
Связанные уязвимости
A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration. If a process can connect over localhost to port 8953, it can alter the configuration of unbound.service. This flaw allows an unprivileged attacker to manipulate a running instance, potentially altering forwarders, allowing them to track all queries forwarded by the local resolver, and, in some cases, disrupting resolving altogether.
A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration. If a process can connect over localhost to port 8953, it can alter the configuration of unbound.service. This flaw allows an unprivileged attacker to manipulate a running instance, potentially altering forwarders, allowing them to track all queries forwarded by the local resolver, and, in some cases, disrupting resolving altogether.
A vulnerability was found in Unbound due to incorrect default permissi ...
8 High
CVSS3