Search CVE reports
321 – 330 of 48457 results
(If a BIND resolver has cached a tree of SVCB/HTTPS AliasMode records, ...)
3 affected packages
bind9, isc-dhcp, bind9-libs
| Package | 20.04 LTS |
|---|---|
| bind9 | Needs evaluation |
| isc-dhcp | Not affected |
| bind9-libs | Needs evaluation |
In NLnet Labs Unbound up to and including 1.26.0, a vulnerability was found in the DNSSEC validator that enables denial of service and possible remote code execution as a result of digesting DNSKEYs. A DNSKEY with an...
1 affected package
unbound
| Package | 20.04 LTS |
|---|---|
| unbound | Needs evaluation |
In NLnet Labs Unbound up to and including 1.26.0, a 255 length query name with a large TCP response can lead to a heap buffer overflow during the RRSet canonicalisation routine. This is caused by missing to add the first owner...
1 affected package
unbound
| Package | 20.04 LTS |
|---|---|
| unbound | Needs evaluation |
(A BIND resolver encountering an SVCB/HTTPS AliasMode record referencin ...)
3 affected packages
bind9, isc-dhcp, bind9-libs
| Package | 20.04 LTS |
|---|---|
| bind9 | Needs evaluation |
| isc-dhcp | Not affected |
| bind9-libs | Needs evaluation |
(If a BIND resolver sends a query for a DNSSEC-signed authoritative zon ...)
3 affected packages
bind9, isc-dhcp, bind9-libs
| Package | 20.04 LTS |
|---|---|
| bind9 | Needs evaluation |
| isc-dhcp | Not affected |
| bind9-libs | Needs evaluation |
In NLnetLabs Unbound up to and including 1.26.0, a degradation of service vulnerability is present in the TCP/DoT reading procedure where there is no limit on consecutive reads. A malicious actor that can stream and sustain a rate...
1 affected package
unbound
| Package | 20.04 LTS |
|---|---|
| unbound | Needs evaluation |
The guest-to-host Unix-domain socket relay in Docker Sandboxes validates that a socket path is inside an authorized workspace, but later reconnects using the pathname. A malicious guest can replace an intermediate directory with a...
2 affected packages
docker.io, docker.io-app
| Package | 20.04 LTS |
|---|---|
| docker.io | Needs evaluation |
| docker.io-app | Needs evaluation |
(The `deleteContainer` opcode (0x14/20) is processed without verifying ...)
1 affected package
zookeeper
| Package | 20.04 LTS |
|---|---|
| zookeeper | Needs evaluation |
(A malformed zone may contain an NS or DNAME node above its origin, whi ...)
3 affected packages
bind9, isc-dhcp, bind9-libs
| Package | 20.04 LTS |
|---|---|
| bind9 | Needs evaluation |
| isc-dhcp | Not affected |
| bind9-libs | Needs evaluation |
NLnet Labs Unbound 1.22.0 up to and including 1.26.1, has a use-after-free vulnerability when compiled for DNS-over-QUIC support with '--with-libngtcp2'. Each DoQ stream owns an output buffer that holds the DNS response. ngtcp2's...
1 affected package
unbound
| Package | 20.04 LTS |
|---|---|
| unbound | Needs evaluation |