Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 11

Количество 11

ubuntu логотип

CVE-2026-58218

7 дней назад

DNS signing DoS via TKEY name cache exhaustion. An unauthenticated user can repeatedly register names TKEY names, which floods a cache causing legitimate TKEYs to be expunged. This can practically block the use DNS TSIG signing.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2026-58218

7 дней назад

A flaw was found in Samba's internal DNS server where unauthenticated TKEY registration requests were added to the TKEY name cache before being rejected. A remote, unauthenticated attacker can exploit this behavior by sending a large number of TKEY requests with arbitrary names, exhausting the cache and evicting legitimate TKEY entries. This can prevent legitimate TSIG authentication for signed DNS queries, resulting in a denial of service.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2026-58218

5 дней назад

A flaw was found in Samba's internal DNS server where unauthenticated TKEY registration requests were added to the TKEY name cache before being rejected. A remote, unauthenticated attacker can exploit this behavior by sending a large number of TKEY requests with arbitrary names, exhausting the cache and evicting legitimate TKEY entries. This can prevent legitimate TSIG authentication for signed DNS queries, resulting in a denial of service.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2026-58218

5 дней назад

A flaw was found in Samba's internal DNS server where unauthenticated ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-qcxx-8h4x-9v7w

5 дней назад

A flaw was found in Samba's internal DNS server where unauthenticated TKEY registration requests were added to the TKEY name cache before being rejected. A remote, unauthenticated attacker can exploit this behavior by sending a large number of TKEY requests with arbitrary names, exhausting the cache and evicting legitimate TKEY entries. This can prevent legitimate TSIG authentication for signed DNS queries, resulting in a denial of service.

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21475-1

6 дней назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3367-1

7 дней назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3365-1

7 дней назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3364-1

7 дней назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3363-1

7 дней назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3362-1

7 дней назад

Security update for samba

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-58218

DNS signing DoS via TKEY name cache exhaustion. An unauthenticated user can repeatedly register names TKEY names, which floods a cache causing legitimate TKEYs to be expunged. This can practically block the use DNS TSIG signing.

CVSS3: 5.3
1%
Низкий
7 дней назад
redhat логотип
CVE-2026-58218

A flaw was found in Samba's internal DNS server where unauthenticated TKEY registration requests were added to the TKEY name cache before being rejected. A remote, unauthenticated attacker can exploit this behavior by sending a large number of TKEY requests with arbitrary names, exhausting the cache and evicting legitimate TKEY entries. This can prevent legitimate TSIG authentication for signed DNS queries, resulting in a denial of service.

CVSS3: 5.3
1%
Низкий
7 дней назад
nvd логотип
CVE-2026-58218

A flaw was found in Samba's internal DNS server where unauthenticated TKEY registration requests were added to the TKEY name cache before being rejected. A remote, unauthenticated attacker can exploit this behavior by sending a large number of TKEY requests with arbitrary names, exhausting the cache and evicting legitimate TKEY entries. This can prevent legitimate TSIG authentication for signed DNS queries, resulting in a denial of service.

CVSS3: 5.3
1%
Низкий
5 дней назад
debian логотип
CVE-2026-58218

A flaw was found in Samba's internal DNS server where unauthenticated ...

CVSS3: 5.3
1%
Низкий
5 дней назад
github логотип
GHSA-qcxx-8h4x-9v7w

A flaw was found in Samba's internal DNS server where unauthenticated TKEY registration requests were added to the TKEY name cache before being rejected. A remote, unauthenticated attacker can exploit this behavior by sending a large number of TKEY requests with arbitrary names, exhausting the cache and evicting legitimate TKEY entries. This can prevent legitimate TSIG authentication for signed DNS queries, resulting in a denial of service.

CVSS3: 5.3
1%
Низкий
5 дней назад
suse-cvrf логотип
openSUSE-SU-2026:21475-1

Security update for samba

6 дней назад
suse-cvrf логотип
SUSE-SU-2026:3367-1

Security update for samba

7 дней назад
suse-cvrf логотип
SUSE-SU-2026:3365-1

Security update for samba

7 дней назад
suse-cvrf логотип
SUSE-SU-2026:3364-1

Security update for samba

7 дней назад
suse-cvrf логотип
SUSE-SU-2026:3363-1

Security update for samba

7 дней назад
suse-cvrf логотип
SUSE-SU-2026:3362-1

Security update for samba

7 дней назад

Уязвимостей на страницу