Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 7

Количество 7

github логотип

GHSA-2wpx-qpw2-g5h5

3 месяца назад

CoreDNS' DoQ worker pool does not bound stream backlog

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-32934

3 месяца назад

CoreDNS is a DNS server that chains plugins. In versions prior to 1.14.3, the DNS-over-QUIC (DoQ) server can be driven into unbounded goroutine and memory growth by a remote client that opens many QUIC streams and sends only 1 byte per stream. When the worker pool is full, CoreDNS still spawns a goroutine per accepted stream to wait for a worker token. Additionally, active workers block indefinitely in io.ReadFull() with no per-stream read deadline, allowing an attacker to pin all workers by sending a single byte so the read blocks waiting for the second byte of the DoQ length prefix. This enables an unauthenticated remote attacker to cause memory exhaustion and OOM-kill. This issue has been fixed in version 1.14.3. No known workarounds exist.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-32934

3 месяца назад

CoreDNS is a DNS server that chains plugins. In versions prior to 1.14.3, the DNS-over-QUIC (DoQ) server can be driven into unbounded goroutine and memory growth by a remote client that opens many QUIC streams and sends only 1 byte per stream. When the worker pool is full, CoreDNS still spawns a goroutine per accepted stream to wait for a worker token. Additionally, active workers block indefinitely in io.ReadFull() with no per-stream read deadline, allowing an attacker to pin all workers by sending a single byte so the read blocks waiting for the second byte of the DoQ length prefix. This enables an unauthenticated remote attacker to cause memory exhaustion and OOM-kill. This issue has been fixed in version 1.14.3. No known workarounds exist.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-32934

3 месяца назад

CoreDNS DNS-over-QUIC unbounded goroutine growth leads to denial of service

EPSS: Низкий
debian логотип

CVE-2026-32934

3 месяца назад

CoreDNS is a DNS server that chains plugins. In versions prior to 1.14 ...

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260729-73-0022

10 дней назад

Уязвимость coredns

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20703-1

3 месяца назад

Security update for coredns

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2wpx-qpw2-g5h5

CoreDNS' DoQ worker pool does not bound stream backlog

CVSS3: 7.5
0%
Низкий
3 месяца назад
redhat логотип
CVE-2026-32934

CoreDNS is a DNS server that chains plugins. In versions prior to 1.14.3, the DNS-over-QUIC (DoQ) server can be driven into unbounded goroutine and memory growth by a remote client that opens many QUIC streams and sends only 1 byte per stream. When the worker pool is full, CoreDNS still spawns a goroutine per accepted stream to wait for a worker token. Additionally, active workers block indefinitely in io.ReadFull() with no per-stream read deadline, allowing an attacker to pin all workers by sending a single byte so the read blocks waiting for the second byte of the DoQ length prefix. This enables an unauthenticated remote attacker to cause memory exhaustion and OOM-kill. This issue has been fixed in version 1.14.3. No known workarounds exist.

CVSS3: 5.9
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-32934

CoreDNS is a DNS server that chains plugins. In versions prior to 1.14.3, the DNS-over-QUIC (DoQ) server can be driven into unbounded goroutine and memory growth by a remote client that opens many QUIC streams and sends only 1 byte per stream. When the worker pool is full, CoreDNS still spawns a goroutine per accepted stream to wait for a worker token. Additionally, active workers block indefinitely in io.ReadFull() with no per-stream read deadline, allowing an attacker to pin all workers by sending a single byte so the read blocks waiting for the second byte of the DoQ length prefix. This enables an unauthenticated remote attacker to cause memory exhaustion and OOM-kill. This issue has been fixed in version 1.14.3. No known workarounds exist.

CVSS3: 7.5
0%
Низкий
3 месяца назад
msrc логотип
CVE-2026-32934

CoreDNS DNS-over-QUIC unbounded goroutine growth leads to denial of service

0%
Низкий
3 месяца назад
debian логотип
CVE-2026-32934

CoreDNS is a DNS server that chains plugins. In versions prior to 1.14 ...

CVSS3: 7.5
0%
Низкий
3 месяца назад
redos логотип
ROS-20260729-73-0022

Уязвимость coredns

CVSS3: 7.5
0%
Низкий
10 дней назад
suse-cvrf логотип
openSUSE-SU-2026:20703-1

Security update for coredns

3 месяца назад

Уязвимостей на страницу