Description
Knot Resolver before 5.1.1 allows traffic amplification via a crafted DNS answer from an attacker-controlled server, aka an "NXNSAttack" issue. This is triggered by random subdomains in the NSDNAME in NS records.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3795-1 | knot-resolver security update |
Ubuntu USN |
USN-7047-1 | Knot Resolver vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T12:04:22.538Z
Reserved: 2020-05-05T00:00:00.000Z
Link: CVE-2020-12667
Updated: 2024-08-04T12:04:22.538Z
Status : Modified
Published: 2020-05-19T13:15:11.763
Modified: 2026-06-17T02:52:06.190
Link: CVE-2020-12667
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-400
Uncontrolled Resource Consumption
Debian DLA
Ubuntu USN