Export CSV

Products

1 vendor
VendorProductsCVEsKEVAvg EPSSWorst Severity
14073.1%HIGH

Related CVEs

4
CVE IDDescriptionSeverityCVSSKEVEPSSPublished
CVE-2023-50387Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue. One of the concerns is that, when there is a zone with many DNSKEY and RRSIG records, the protocol specification implies that an algorithm must evaluate all combinations of DNSKEY and RRSIG records.HIGH7.5100.0%Feb 14, 2024
CVE-2023-46317Knot Resolver before 5.7.0 performs many TCP reconnections upon receiving certain nonsensical responses from servers.HIGH7.546.2%Oct 22, 2023
CVE-2023-26249Knot Resolver before 5.6.0 enables attackers to consume its resources, launching amplification attacks and potentially causing a denial of service. Specifically, a single client query may lead to a hundred TCP connection attempts if a DNS server closes connections without providing a response.HIGH7.5Feb 21, 2023
CVE-2022-40188Knot Resolver before 5.5.3 allows remote attackers to cause a denial of service (CPU consumption) because of algorithmic complexity. During an attack, an authoritative server must return large NS sets or address sets.HIGH7.5Sep 23, 2022