Denial of Service Vulnerability in Unbound DNS by NLnet Labs
CVE-2011-1922

Currently unrated

Key Information:

Vendor

Nlnetlabs

Status
Vendor
CVE Published:
31 May 2011

What is CVE-2011-1922?

The vulnerability in Unbound DNS arises when both debugging functionality and the interface-automatic option are enabled. This configuration can be exploited by remote attackers, who can send a specially crafted DNS request that causes an assertion failure, leading to the exit of the daemon. This improper error handling presents a risk of denial of service, potentially disrupting DNS resolution services.

References

EPSS Score

7% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.