Unbound before 1.9.4 accesses uninitialized memory, which allows remote attackers to trigger a crash via a crafted NOTIFY query. The source IP address of the query must match an access-control rule.
| Software | From | Fixed in |
|---|---|---|
| nlnetlabs / unbound | - | 1.9.4 |
| canonical / ubuntu_linux | 19.04 | 19.04.x |