Количество 8
Количество 8
CVE-2026-27854
An attacker might be able to trigger a use-after-free by sending crafted DNS queries to a DNSdist using the DNSQuestion:getEDNSOptions method in custom Lua code. In some cases DNSQuestion:getEDNSOptions might refer to a version of the DNS packet that has been modified, thus triggering a use-after-free and potentially a crash resulting in denial of service.
CVE-2026-27854
An attacker might be able to trigger a use-after-free by sending crafted DNS queries to a DNSdist using the DNSQuestion:getEDNSOptions method in custom Lua code. In some cases DNSQuestion:getEDNSOptions might refer to a version of the DNS packet that has been modified, thus triggering a use-after-free and potentially a crash resulting in denial of service.
CVE-2026-27854
An attacker might be able to trigger a use-after-free by sending craft ...
ROS-20260812-80-0018
Уязвимость dnsdist
ROS-20260812-73-0015
Уязвимость dnsdist
GHSA-fmwh-v9r8-w9j6
An attacker might be able to trigger a use-after-free by sending crafted DNS queries to a DNSdist using the DNSQuestion:getEDNSOptions method in custom Lua code. In some cases DNSQuestion:getEDNSOptions might refer to a version of the DNS packet that has been modified, thus triggering a use-after-free and potentially a crash resulting in denial of service.
SUSE-SU-2026:1618-1
Security update for dnsdist
openSUSE-SU-2026:21015-1
Security update for dnsdist
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-27854 An attacker might be able to trigger a use-after-free by sending crafted DNS queries to a DNSdist using the DNSQuestion:getEDNSOptions method in custom Lua code. In some cases DNSQuestion:getEDNSOptions might refer to a version of the DNS packet that has been modified, thus triggering a use-after-free and potentially a crash resulting in denial of service. | CVSS3: 4.8 | 0% Низкий | 5 месяцев назад | |
CVE-2026-27854 An attacker might be able to trigger a use-after-free by sending crafted DNS queries to a DNSdist using the DNSQuestion:getEDNSOptions method in custom Lua code. In some cases DNSQuestion:getEDNSOptions might refer to a version of the DNS packet that has been modified, thus triggering a use-after-free and potentially a crash resulting in denial of service. | CVSS3: 4.8 | 0% Низкий | 5 месяцев назад | |
CVE-2026-27854 An attacker might be able to trigger a use-after-free by sending craft ... | CVSS3: 4.8 | 0% Низкий | 5 месяцев назад | |
ROS-20260812-80-0018 Уязвимость dnsdist | CVSS3: 7.5 | 0% Низкий | 8 дней назад | |
ROS-20260812-73-0015 Уязвимость dnsdist | CVSS3: 7.5 | 0% Низкий | 8 дней назад | |
GHSA-fmwh-v9r8-w9j6 An attacker might be able to trigger a use-after-free by sending crafted DNS queries to a DNSdist using the DNSQuestion:getEDNSOptions method in custom Lua code. In some cases DNSQuestion:getEDNSOptions might refer to a version of the DNS packet that has been modified, thus triggering a use-after-free and potentially a crash resulting in denial of service. | CVSS3: 4.8 | 0% Низкий | 5 месяцев назад | |
SUSE-SU-2026:1618-1 Security update for dnsdist | 4 месяца назад | |||
openSUSE-SU-2026:21015-1 Security update for dnsdist | около 2 месяцев назад |
Уязвимостей на страницу