ZeroHour

CVE-2020-12662

CVSS 3.1
7.5 high
EPSS
3%p87
Published
()
Modified
Description

Unbound before 1.10.1 has Insufficient Control of Network Message Volume, aka an "NXNSAttack" issue. This is triggered by random subdomains in the NSDNAME in NS records.

Vendors
nlnetlabsdebianopensusecanonicalfedoraproject
Products
unbound, debian linux, leap, ubuntu linux, fedora
Weakness
CWE-400
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.