Lucene search

K
f5F5F5:K15931
HistoryJun 04, 2015 - 12:00 a.m.

K15931 : Unbound vulnerability CVE-2014-8602

2015-06-0400:00:00
my.f5.com
15

AI Score

6

Confidence

High

EPSS

0.59

Percentile

97.8%

Security Advisory Description

iterator.c in NLnet Labs Unbound before 1.5.1 does not limit delegation chaining, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a large or infinite number of referrals. (CVE-2014-8602)

Impact

An attacker with a properly configured authority server could cause a denial-of-service using a crafted DNS recursive query, designed to follow an endless series of delegations.