Where
-Infinity
0

oss-secUnbound: 1.25.2 addsses multiple CVE items

Fedoraproject FedoraDenial of service when trimming EDE text on positive replies

Risk 43
Severity
7.5
First published (updated )

Microsoft Windows Server 2012Unbound: disclosure of CVE-2023-50387 and CVE-2023-50868 DNSSEC validation vulnerabilities

Risk 49
Severity
7.5
First published (updated )

Fedoraproject FedoraNRDelegation Attack

Risk 43
Severity
7.5
First published (updated )

Fedoraproject FedoraNovel "ghost domain names" attack by updating almost expired delegation information

Risk 38
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Fedoraproject FedoraNovel "ghost domain names" attack by introducing subdomain delegations

Risk 38
Severity
6.5
First published (updated )

nlnetlabs UnboundUnbound before 1.9.5 allows configuration injection in create_unbound_ad_servers.sh upon a successfu…

Risk 35
Severity
5.9
First published (updated )

nlnetlabs UnboundInteger Overflow

Risk 86
Severity
9.8
First published (updated )

redhat/unboundInteger Overflow

Risk 86
Severity
9.8
First published (updated )

nlnetlabs UnboundInteger Overflow

Risk 86
Severity
9.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

nlnetlabs UnboundUnbound before 1.9.5 allows an out-of-bounds write in sldns_bget_token_par. NOTE: The vendor dispute…

Risk 86
Severity
9.8
First published (updated )

nlnetlabs UnboundUnbound before 1.9.5 allows an assertion failure and denial of service in synth_cname. NOTE: The ven…

Risk 43
Severity
7.5
First published (updated )

nlnetlabs UnboundUnbound before 1.9.5 allows an assertion failure and denial of service in dname_pkt_copy via an inva…

Risk 43
Severity
7.5
First published (updated )

nlnetlabs UnboundInteger Overflow

Risk 86
Severity
9.8
First published (updated )

nlnetlabs UnboundInteger Overflow

Risk 86
Severity
9.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

nlnetlabs UnboundUnbound before 1.9.5 allows an infinite loop via a compressed name in dname_pkt_copy. NOTE: The vend…

Risk 43
Severity
7.5
First published (updated )

nlnetlabs UnboundUnbound before 1.9.5 allows an assertion failure via a compressed name in dname_pkt_copy. NOTE: The …

Risk 43
Severity
7.5
First published (updated )

nlnetlabs UnboundUnbound before 1.9.5 allows an out-of-bounds write via a compressed name in rdata_copy. NOTE: The ve…

Risk 86
Severity
9.8
First published (updated )

nlnetlabs Name Server DaemonLocal symlink attack in Unbound and NSD

Risk 32
Severity
5.5
First published (updated )

ubuntu/unboundUnbound before 1.10.1 has Insufficient Control of Network Message Volume, aka an "NXNSAttack" issue.…

Risk 46
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

ubuntu/unboundUnbound before 1.10.1 has an infinite loop via malformed DNS answers received from upstream servers.

Risk 46
Severity
7.5
First published (updated )

openSUSE LeapOS Command Injection

Risk 51
Severity
7.3
First published (updated )

Canonical Ubuntu Linuxiterator.c in NLnet Labs Unbound before 1.5.1 does not limit delegation chaining, which allows remot…

Risk 22
Severity
4.3
First published (updated )

Unbound UnboundThe resolver in Unbound before 1.4.11 overwrites cached server names and TTL values in NS records du…

Risk 40
Severity
6.4
First published (updated )

Unbound Unboundvalidator/val_nsec3.c in Unbound before 1.4.13p2 does not properly perform proof processing for NSEC…

Risk 44
Severity
7.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Unbound UnboundUnbound before 1.4.13p2 attempts to free unallocated memory during processing of duplicate CNAME rec…

Risk 26
Severity
5
First published (updated )

nlnetlabs UnboundUnbound before 1.4.4 does not send responses for signed zones after mishandling an unspecified query…

Risk 26
Severity
5
First published (updated )

nlnetlabs Unbounddaemon/worker.c in Unbound 1.x before 1.4.10, when debugging functionality and the interface-automat…

Risk 22
Severity
4.3
First published (updated )

nlnetlabs UnboundUnbound before 1.3.4 does not properly verify signatures for NSEC3 records, which allows remote atta…

Risk 52
Severity
7.5
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203