Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 16

Количество 16

ubuntu логотип

CVE-2026-42534

2 месяца назад

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the jostle logic that could defeat its purpose and degrade resolution performance. Retransmits of the same query could renew the age of slow running queries and not allow the jostle logic to see them as aged and potential targets for replacement with new queries. An adversary who can query a vulnerable Unbound and who can control a domain name server that replies slowly and/or maliciously to Unbound's queries can exploit the vulnerability and degrade the resolution performance of Unbound. When Unbound's 'num-queries-per-thread' reaches its limit, the jostle logic kicks in. When a new query comes in, half of the available queries that are also slow to resolve are candidates for replacement. The vulnerability then happens because duplicate queries that need resolution would skew the aging result by using the timestamp of the latest duplicate query instead of the original one that started the resolution effort...

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2026-42534

2 месяца назад

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the jostle logic that could defeat its purpose and degrade resolution performance. Retransmits of the same query could renew the age of slow running queries and not allow the jostle logic to see them as aged and potential targets for replacement with new queries. An adversary who can query a vulnerable Unbound and who can control a domain name server that replies slowly and/or maliciously to Unbound's queries can exploit the vulnerability and degrade the resolution performance of Unbound. When Unbound's 'num-queries-per-thread' reaches its limit, the jostle logic kicks in. When a new query comes in, half of the available queries that are also slow to resolve are candidates for replacement. The vulnerability then happens because duplicate queries that need resolution would skew the aging result by using the timestamp of the latest duplicate query instead of the original one that started the resolution effort...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-42534

2 месяца назад

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the jostle logic that could defeat its purpose and degrade resolution performance. Retransmits of the same query could renew the age of slow running queries and not allow the jostle logic to see them as aged and potential targets for replacement with new queries. An adversary who can query a vulnerable Unbound and who can control a domain name server that replies slowly and/or maliciously to Unbound's queries can exploit the vulnerability and degrade the resolution performance of Unbound. When Unbound's 'num-queries-per-thread' reaches its limit, the jostle logic kicks in. When a new query comes in, half of the available queries that are also slow to resolve are candidates for replacement. The vulnerability then happens because duplicate queries that need resolution would skew the aging result by using the timestamp of the latest duplicate query instead of the original one that started the resolution effort. C

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2026-42534

2 месяца назад

Jostle logic bypass degrades resolution performance

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2026-42534

2 месяца назад

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerabil ...

CVSS3: 5.3
EPSS: Низкий
redos логотип

ROS-20260713-73-0013

19 дней назад

Уязвимость unbound

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xfcv-gp55-3wpf

2 месяца назад

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the jostle logic that could defeat its purpose and degrade resolution performance. Retransmits of the same query could renew the age of slow running queries and not allow the jostle logic to see them as aged and potential targets for replacement with new queries. An adversary who can query a vulnerable Unbound and who can control a domain name server that replies slowly and/or maliciously to Unbound's queries can exploit the vulnerability and degrade the resolution performance of Unbound. When Unbound's 'num-queries-per-thread' reaches its limit, the jostle logic kicks in. When a new query comes in, half of the available queries that are also slow to resolve are candidates for replacement. The vulnerability then happens because duplicate queries that need resolution would skew the aging result by using the timestamp of the latest duplicate query instead of the original one that started the resolution effort...

CVSS3: 5.3
EPSS: Низкий
rocky логотип

RLSA-2026:37282

3 дня назад

Important: unbound security update

EPSS: Низкий
rocky логотип

RLSA-2026:36777

3 дня назад

Important: unbound security update

EPSS: Низкий
rocky логотип

RLSA-2026:36320

3 дня назад

Important: unbound security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37282

23 дня назад

ELSA-2026-37282: unbound security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-36777

23 дня назад

ELSA-2026-36777: unbound security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-36320

16 дней назад

ELSA-2026-36320: unbound security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21083-1

около 1 месяца назад

Security update for unbound

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2369-1

около 2 месяцев назад

Security update for unbound

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2281-1

около 2 месяцев назад

Security update for unbound

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-42534

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the jostle logic that could defeat its purpose and degrade resolution performance. Retransmits of the same query could renew the age of slow running queries and not allow the jostle logic to see them as aged and potential targets for replacement with new queries. An adversary who can query a vulnerable Unbound and who can control a domain name server that replies slowly and/or maliciously to Unbound's queries can exploit the vulnerability and degrade the resolution performance of Unbound. When Unbound's 'num-queries-per-thread' reaches its limit, the jostle logic kicks in. When a new query comes in, half of the available queries that are also slow to resolve are candidates for replacement. The vulnerability then happens because duplicate queries that need resolution would skew the aging result by using the timestamp of the latest duplicate query instead of the original one that started the resolution effort...

CVSS3: 5.3
1%
Низкий
2 месяца назад
redhat логотип
CVE-2026-42534

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the jostle logic that could defeat its purpose and degrade resolution performance. Retransmits of the same query could renew the age of slow running queries and not allow the jostle logic to see them as aged and potential targets for replacement with new queries. An adversary who can query a vulnerable Unbound and who can control a domain name server that replies slowly and/or maliciously to Unbound's queries can exploit the vulnerability and degrade the resolution performance of Unbound. When Unbound's 'num-queries-per-thread' reaches its limit, the jostle logic kicks in. When a new query comes in, half of the available queries that are also slow to resolve are candidates for replacement. The vulnerability then happens because duplicate queries that need resolution would skew the aging result by using the timestamp of the latest duplicate query instead of the original one that started the resolution effort...

CVSS3: 7.5
1%
Низкий
2 месяца назад
nvd логотип
CVE-2026-42534

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the jostle logic that could defeat its purpose and degrade resolution performance. Retransmits of the same query could renew the age of slow running queries and not allow the jostle logic to see them as aged and potential targets for replacement with new queries. An adversary who can query a vulnerable Unbound and who can control a domain name server that replies slowly and/or maliciously to Unbound's queries can exploit the vulnerability and degrade the resolution performance of Unbound. When Unbound's 'num-queries-per-thread' reaches its limit, the jostle logic kicks in. When a new query comes in, half of the available queries that are also slow to resolve are candidates for replacement. The vulnerability then happens because duplicate queries that need resolution would skew the aging result by using the timestamp of the latest duplicate query instead of the original one that started the resolution effort. C

CVSS3: 5.3
1%
Низкий
2 месяца назад
msrc логотип
CVE-2026-42534

Jostle logic bypass degrades resolution performance

CVSS3: 5.3
1%
Низкий
2 месяца назад
debian логотип
CVE-2026-42534

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerabil ...

CVSS3: 5.3
1%
Низкий
2 месяца назад
redos логотип
ROS-20260713-73-0013

Уязвимость unbound

CVSS3: 5.3
1%
Низкий
19 дней назад
github логотип
GHSA-xfcv-gp55-3wpf

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the jostle logic that could defeat its purpose and degrade resolution performance. Retransmits of the same query could renew the age of slow running queries and not allow the jostle logic to see them as aged and potential targets for replacement with new queries. An adversary who can query a vulnerable Unbound and who can control a domain name server that replies slowly and/or maliciously to Unbound's queries can exploit the vulnerability and degrade the resolution performance of Unbound. When Unbound's 'num-queries-per-thread' reaches its limit, the jostle logic kicks in. When a new query comes in, half of the available queries that are also slow to resolve are candidates for replacement. The vulnerability then happens because duplicate queries that need resolution would skew the aging result by using the timestamp of the latest duplicate query instead of the original one that started the resolution effort...

CVSS3: 5.3
1%
Низкий
2 месяца назад
rocky логотип
RLSA-2026:37282

Important: unbound security update

3 дня назад
rocky логотип
RLSA-2026:36777

Important: unbound security update

3 дня назад
rocky логотип
RLSA-2026:36320

Important: unbound security update

3 дня назад
oracle-oval логотип
ELSA-2026-37282

ELSA-2026-37282: unbound security update (IMPORTANT)

23 дня назад
oracle-oval логотип
ELSA-2026-36777

ELSA-2026-36777: unbound security update (IMPORTANT)

23 дня назад
oracle-oval логотип
ELSA-2026-36320

ELSA-2026-36320: unbound security update (IMPORTANT)

16 дней назад
suse-cvrf логотип
openSUSE-SU-2026:21083-1

Security update for unbound

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2369-1

Security update for unbound

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:2281-1

Security update for unbound

около 2 месяцев назад

Уязвимостей на страницу