Denial of Service Vulnerability in Unbound DNS Server by NLnet Labs
CVE-2019-25037
7.5HIGH
What is CVE-2019-25037?
Unbound DNS server, prior to version 1.9.5, is susceptible to a denial of service due to an assertion failure triggered by an invalid packet in the dname_pkt_copy function. Although the vendor asserts that this issue cannot be exploited in a running Unbound installation, it raises concerns about potential handling of unexpected input, making it essential for users to stay informed and consider applying security updates for enhanced resilience.
