Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

NLnet Labs — Vulnerabilities & Security Advisories 77

Browse all 77 CVE security advisories affecting NLnet Labs. AI-powered Chinese analysis, POCs, and references for each vulnerability.

NLnet Labs operates as a non-profit research organization primarily focused on developing open-source software for the Domain Name System (DNS) and internet infrastructure. Its most prominent contribution is Unbound, a validating, recursive, and caching DNS resolver widely deployed for its emphasis on security and privacy. Historically, vulnerabilities associated with its software have predominantly involved memory corruption issues, such as buffer overflows and use-after-free errors, rather than application-layer flaws like cross-site scripting. These defects typically stem from low-level C code implementation details. While no catastrophic, widespread breaches have defined its public history, the presence of twenty recorded CVEs indicates ongoing challenges in maintaining strict memory safety within complex network protocols. The organization generally addresses these findings through prompt patches, reflecting a standard open-source maintenance lifecycle where technical rigor in cryptographic and network logic is prioritized over commercial feature expansion.

CVE ID Title CVSS Severity Published
CVE-2026-85501 Retrap: Novel Vulnerabilities to launch Algorithmic Complexity Attacks on DNSSEC — Unbound CWE-770 5.3 Medium 2026-09-16
CVE-2026-82720 Use-after-free in DoH stream cleanup code path — Unbound CWE-416 5.9 Medium 2026-09-16
CVE-2026-82717 CNAME synthesis could lead to heap corruption — Unbound CWE-122 8.4 High 2026-09-16
CVE-2026-81642 Heap buffer overflow and possible Remote Code Execution when digesting DNSKEY — Unbound CWE-122 9.1 Critical 2026-09-16
CVE-2026-81634 Possible heap buffer overflow during DNSSEC canonicalization — Unbound CWE-122 7.5 High 2026-09-16
CVE-2026-80225 Possible degradation of service from continuous queries on the same TCP/DoT connection — Unbound CWE-770 5.3 Medium 2026-09-16
CVE-2026-78227 Use-after-free in DoQ stream output buffer on reset re-transmission — Unbound CWE-416 6.5 Medium 2026-09-16
CVE-2026-77955 Possible ZONEMD verification bypass window — Unbound CWE-345 4.4 Medium 2026-09-16
CVE-2026-77860 'serve-expired' can bypass Unbound 'wait-limit' — Unbound CWE-675 3.7 Low 2026-09-16
CVE-2026-19538 Bypass of BLOCKED ACL items on proxy protocol port over TCP or TLS — NSD CWE-290 8.2 High 2026-08-26
CVE-2026-19401 Remote UDP DoS by sending multiple DNS Cookie options — NSD CWE-617 8.2 High 2026-08-26
CVE-2026-18916 Remote TCP DoS by throttling the TCP receive window — NSD CWE-191 6.9 Medium 2026-08-26
CVE-2026-18664 Wrong interpretation of ACL ranges — NSD CWE-284 8.2 High 2026-08-26
CVE-2026-56444 Degradation of resolution service when 'discard-timeout' and 'serve-expired-client-timeout' are combined in unusual configuration — Unbound CWE-772 5.9 Medium 2026-07-22
CVE-2026-56416 Possible heap buffer overflow when validator canonicalizes RDATA that contains domain name — Unbound CWE-354 4.8 Medium 2026-07-22
CVE-2026-55991 Remote DNS-over-QUIC (DoQ) flow-control assertion failure in libngtcp2 — Unbound CWE-195 5.9 Medium 2026-07-22
CVE-2026-55990 Packet of death for a DNSCrypt misconfigured Unbound — Unbound CWE-457 5.9 Medium 2026-07-22
CVE-2026-55973 'dns-error-reporting: yes' leads to stack buffer overflow — Unbound CWE-20 7.5 High 2026-07-22
CVE-2026-55717 'serve-expired-client-timeout' and 'response-ip' CNAME redirect could lead to a crash — Unbound CWE-476 5.9 Medium 2026-07-22
CVE-2026-55708 Privacy/configuration issue when adding local data in views through 'unbound-control' — Unbound CWE-1188 3.1 Low 2026-07-22
CVE-2026-54478 DNS Cookie bypass when combined with proxy-protocol use — Unbound CWE-290 3.7 Low 2026-07-22
CVE-2026-52863 Memory corruption could lead to crash and denial of service — Unbound CWE-416 5.9 Medium 2026-07-22
CVE-2026-50252 Possible cache poisoning attack by mapping source port population per thread — Unbound CWE-349 - - 2026-07-22
CVE-2026-50251 Attacker supplied '0.0.0.0'/'::' glue triggers defensive full-cache flush — Unbound CWE-184 5.3 Medium 2026-07-22
CVE-2026-50248 BOGUS configured primary hostname accepted for XFR in auth/rpz zones — Unbound CWE-345 6.5 Medium 2026-07-22
CVE-2026-50243 'response-ip'/'rpz' can rewrite BOGUS answers instead of returning SERVFAIL — Unbound CWE-348 - - 2026-07-22
CVE-2026-50046 Possible heap use-after-free in an error path when a DoT forwarded query is jostled out — Unbound CWE-416 5.9 Medium 2026-07-22
CVE-2026-50045 'max-global-quota' reset by DNSSEC validation restarts — Unbound CWE-406 5.3 Medium 2026-07-22
CVE-2026-46582 A wildcard replay, as another piece of data, triggers poisoning in the serve expired reply path — Unbound CWE-358 3.7 Low 2026-07-22
CVE-2026-44690 Cross-zone wildcard cache poisoning via RRSIG.labels manipulation — Unbound CWE-345 7.5 High 2026-07-22

This page lists every published CVE security advisory associated with NLnet Labs. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.