DNRD (aka Domain Name Relay Daemon) 2.20.3 forwards and caches DNS queries with the CD (aka checking disabled) bit set to 1. This leads to disabling of DNSSEC protection provided by upstream resolvers.
References
Link | Resource |
---|---|
http://dnrd.sourceforge.net/ | Product Third Party Advisory |
https://www.usenix.org/conference/usenixsecurity22/presentation/jeitner | Third Party Advisory |
https://www.openwall.com/lists/oss-security/2022/08/14/1 | Mailing List Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-08-15 05:15
Updated : 2022-08-18 10:32
NVD link : CVE-2022-33992
Mitre link : CVE-2022-33992
JSON object : View
CWE
Products Affected
domain_name_relay_daemon_project
- domain_name_relay_daemon