Search CVE reports
361 – 370 of 47099 results
In NLnet Labs Unbound up to and including 1.26.0, a vulnerability was found in that can progressively corrupt heap memory and under certain systems and compilation options could lead to remote code execution. The...
1 affected package
unbound
| Package | 24.04 LTS |
|---|---|
| unbound | Needs evaluation |
[Unknown description]
1 affected package
znc
| Package | 24.04 LTS |
|---|---|
| znc | Needs evaluation |
[Unknown description]
1 affected package
znc
| Package | 24.04 LTS |
|---|---|
| znc | Needs evaluation |
(If a BIND resolver has cached a tree of SVCB/HTTPS AliasMode records, ...)
3 affected packages
bind9, isc-dhcp, bind9-libs
| Package | 24.04 LTS |
|---|---|
| bind9 | Needs evaluation |
| isc-dhcp | Needs evaluation |
| bind9-libs | Not in release |
In NLnet Labs Unbound up to and including 1.26.0, a vulnerability was found in the DNSSEC validator that enables denial of service and possible remote code execution as a result of digesting DNSKEYs. A DNSKEY with an...
1 affected package
unbound
| Package | 24.04 LTS |
|---|---|
| unbound | Needs evaluation |
In NLnet Labs Unbound up to and including 1.26.0, a 255 length query name with a large TCP response can lead to a heap buffer overflow during the RRSet canonicalisation routine. This is caused by missing to add the first owner...
1 affected package
unbound
| Package | 24.04 LTS |
|---|---|
| unbound | Needs evaluation |
(A BIND resolver encountering an SVCB/HTTPS AliasMode record referencin ...)
3 affected packages
bind9, isc-dhcp, bind9-libs
| Package | 24.04 LTS |
|---|---|
| bind9 | Needs evaluation |
| isc-dhcp | Needs evaluation |
| bind9-libs | Not in release |
(If a BIND resolver sends a query for a DNSSEC-signed authoritative zon ...)
3 affected packages
bind9, isc-dhcp, bind9-libs
| Package | 24.04 LTS |
|---|---|
| bind9 | Needs evaluation |
| isc-dhcp | Needs evaluation |
| bind9-libs | Not in release |
In NLnetLabs Unbound up to and including 1.26.0, a degradation of service vulnerability is present in the TCP/DoT reading procedure where there is no limit on consecutive reads. A malicious actor that can stream and sustain a rate...
1 affected package
unbound
| Package | 24.04 LTS |
|---|---|
| unbound | Needs evaluation |
The guest-to-host Unix-domain socket relay in Docker Sandboxes validates that a socket path is inside an authorized workspace, but later reconnects using the pathname. A malicious guest can replace an intermediate directory with a...
2 affected packages
docker.io, docker.io-app
| Package | 24.04 LTS |
|---|---|
| docker.io | Needs evaluation |
| docker.io-app | Needs evaluation |