任何远程客户端都可以通过在 TCP 查询后限制 TCP 接收窗口的大小,来导致 NSD 服务的子进程崩溃。通过持续使子进程崩溃,远程客户端可以拒绝该 NSD 实例的所有 TCP 服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| NLnet Labs | NSD | 3.2.11< 4.15.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| NLnet Labs | NSD | 3.2.11 ~ 4.15.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-18664 | 8.2 HIGH | Wrong interpretation of ACL ranges |
| CVE-2026-19401 | 8.2 HIGH | Remote UDP DoS by sending multiple DNS Cookie options |
| CVE-2026-19538 | 8.2 HIGH | Bypass of BLOCKED ACL items on proxy protocol port over TCP or TLS |
No comments yet