Количество 5
Количество 5
CVE-2026-26018
CoreDNS is a DNS server that chains plugins. Prior to version 1.14.2, a denial of service vulnerability exists in CoreDNS's loop detection plugin that allows an attacker to crash the DNS server by sending specially crafted DNS queries. The vulnerability stems from the use of a predictable pseudo-random number generator (PRNG) for generating a secret query name, combined with a fatal error handler that terminates the entire process. This issue has been patched in version 1.14.2.
CVE-2026-26018
CoreDNS is a DNS server that chains plugins. Prior to version 1.14.2, a denial of service vulnerability exists in CoreDNS's loop detection plugin that allows an attacker to crash the DNS server by sending specially crafted DNS queries. The vulnerability stems from the use of a predictable pseudo-random number generator (PRNG) for generating a secret query name, combined with a fatal error handler that terminates the entire process. This issue has been patched in version 1.14.2.
CVE-2026-26018
CoreDNS Loop Detection Denial of Service Vulnerability
CVE-2026-26018
CoreDNS is a DNS server that chains plugins. Prior to version 1.14.2, ...
GHSA-h75p-j8xm-m278
CoreDNS Loop Detection Denial of Service Vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-26018 CoreDNS is a DNS server that chains plugins. Prior to version 1.14.2, a denial of service vulnerability exists in CoreDNS's loop detection plugin that allows an attacker to crash the DNS server by sending specially crafted DNS queries. The vulnerability stems from the use of a predictable pseudo-random number generator (PRNG) for generating a secret query name, combined with a fatal error handler that terminates the entire process. This issue has been patched in version 1.14.2. | CVSS3: 7.5 | 0% Низкий | 21 день назад | |
CVE-2026-26018 CoreDNS is a DNS server that chains plugins. Prior to version 1.14.2, a denial of service vulnerability exists in CoreDNS's loop detection plugin that allows an attacker to crash the DNS server by sending specially crafted DNS queries. The vulnerability stems from the use of a predictable pseudo-random number generator (PRNG) for generating a secret query name, combined with a fatal error handler that terminates the entire process. This issue has been patched in version 1.14.2. | CVSS3: 7.5 | 0% Низкий | 21 день назад | |
CVE-2026-26018 CoreDNS Loop Detection Denial of Service Vulnerability | CVSS3: 7.5 | 0% Низкий | 18 дней назад | |
CVE-2026-26018 CoreDNS is a DNS server that chains plugins. Prior to version 1.14.2, ... | CVSS3: 7.5 | 0% Низкий | 21 день назад | |
GHSA-h75p-j8xm-m278 CoreDNS Loop Detection Denial of Service Vulnerability | CVSS3: 7.5 | 0% Низкий | 20 дней назад |
Уязвимостей на страницу