296,223
Total vulnerabilities in the database
Knot DNS before 2.4.5 and 2.5.x before 2.5.2 contains a flaw within the TSIG protocol implementation that would allow an attacker with a valid key name and algorithm to bypass TSIG authentication if no additional ACL restrictions are set, because of an improper TSIG validity period check.
Software | From | Fixed in |
---|---|---|
knot-dns / knot_dns | 2.5.0 | 2.5.0.x |
knot-dns / knot_dns | - | 2.4.4.x |
knot-dns / knot_dns | 2.5.1 | 2.5.1.x |
debian / debian_linux | 8.0 | 8.0.x |
debian / debian_linux | 9.0 | 9.0.x |
debian / debian_linux | 10.0 | 10.0.x |