Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-12246

Опубликовано: 25 июн. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 8.1

Описание

NSD version 4.14.0 introduced a bug where a specially crafted APL RR, with an adflength larger than permitted for the address family will overwrite the stack when the zone is written to disk, with a maximum of 111 attacker controlled bytes.

РелизСтатусПримечание
devel

needs-triage

esm-apps-legacy/xenial

released

4.1.7-1ubuntu0.1~esm1
esm-apps/bionic

released

4.1.17-1ubuntu0.1~esm1
esm-apps/focal

released

4.1.26-1ubuntu0.1~esm1
esm-apps/jammy

released

4.3.9-1ubuntu0.1~esm1
esm-apps/noble

released

4.8.0-1ubuntu0.1~esm1
esm-apps/resolute

released

4.14.0-1ubuntu0.1~esm1
jammy

needed

noble

needed

questing

ignored

end of life, was needed

Показывать по

EPSS

Процентиль: 22%
0.003
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8
redhat
около 2 месяцев назад

NSD version 4.14.0 introduced a bug where a specially crafted APL RR, with an adflength larger than permitted for the address family will overwrite the stack when the zone is written to disk, with a maximum of 111 attacker controlled bytes.

CVSS3: 8.1
nvd
около 2 месяцев назад

NSD version 4.14.0 introduced a bug where a specially crafted APL RR, with an adflength larger than permitted for the address family will overwrite the stack when the zone is written to disk, with a maximum of 111 attacker controlled bytes.

CVSS3: 8.1
debian
около 2 месяцев назад

NSD version 4.14.0 introduced a bug where a specially crafted APL RR, ...

CVSS3: 8.1
github
около 2 месяцев назад

NSD version 4.14.0 introduced a bug where a specially crafted APL RR, with an adflength larger than permitted for the address family will overwrite the stack when the zone is written to disk, with a maximum of 111 attacker controlled bytes.

suse-cvrf
21 день назад

Security update for nsd

EPSS

Процентиль: 22%
0.003
Низкий

8.1 High

CVSS3