CVE-2022-32983: Medium severity go-resolver vulnerability
Published Jun 20, 2022
·Updated
Knot Resolver through 5.5.1 may allow DNS cache poisoning when there is an attempt to limit forwarding actions by filters.
Affected Software
1 affected component
nic Knot Resolver<=5.5.1
Remediation
Event History
Jun 20, 2022
CVE Published
via MITRE·03:05 PM
Data Sourced
via MITRE·03:05 PM
Description
Frequently Asked Questions
1
What is CVE-2022-32983?
CVE-2022-32983 is a vulnerability in Knot Resolver version through 5.5.1 that may allow DNS cache poisoning when there is an attempt to limit forwarding actions by filters.
2
How severe is CVE-2022-32983?
CVE-2022-32983 has a severity level of medium, with a severity value of 5.3.
3
How can I fix CVE-2022-32983?
To fix CVE-2022-32983, upgrade to Knot Resolver version 5.5.2 or higher.
4
Where can I find more information about CVE-2022-32983?
You can find more information about CVE-2022-32983 in the official documentation for Knot Resolver.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2022-32983?
The Common Weakness Enumeration (CWE) ID for CVE-2022-32983 is CWE-290.