NLnet Labs NSD是荷兰NLnet Labs组织的一款DNS服务器软件。 NLnet Labs NSD 4.14.0版本至4.14.3之前版本存在安全漏洞,该漏洞源于在处理特制SVCB RR时,uint16_t变量在分配空间时发生整数溢出(总大小大于65535),导致堆溢出,攻击者可执行最多65509字节的受控头部写入。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| NLnet Labs | NSD | 4.14.0< 4.14.3 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| NLnet Labs | NSD | 4.14.0 ~ 4.14.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-12245 | Denial of DNS over TLS service by any DoT client | |
| CVE-2026-12246 | Out of bounds stack write with crafted APL RR | |
| CVE-2026-12490 | Bypass of client certificate verification with transfer over TLS |
No comments yet