ZeroHour

CVE-2022-33991

PoC
CVSS 3.1
5.3 medium
EPSS
<1%p59
Published
()
Modified
Description

dproxy-nexgen (aka dproxy nexgen) forwards and caches DNS queries with the CD (aka checking disabled) bit set to 1. This leads to disabling of DNSSEC protection provided by upstream resolvers.

Vendors
dproxy-nexgen project
Products
dproxy-nexgen
Weakness
CWE-290
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.