Knot Resolver before 5.5.3 allows remote attackers to cause a denial of service (CPU consumption) because of algorithmic complexity. During an attack, an authoritative server must return large NS sets or address sets.
References
Information
Published : 2022-09-23 09:15
Updated : 2022-10-07 20:15
NVD link : CVE-2022-40188
Mitre link : CVE-2022-40188
JSON object : View
CWE
CWE-400
Uncontrolled Resource Consumption
Products Affected
nic
- knot_resolver
fedoraproject
- fedora