Lucene search

K

Knot-dns Security Vulnerabilities

cve
cve

CVE-2017-11104

Knot DNS before 2.4.5 and 2.5.x before 2.5.2 contains a flaw within the TSIG protocol implementation that would allow an attacker with a valid key name and algorithm to bypass TSIG authentication if no additional ACL restrictions are set, because of an improper TSIG validity period...

5.9CVSS

5.6AI Score

0.003EPSS

2017-07-08 10:29 AM
151
cve
cve

CVE-2016-6171

Knot DNS before 2.3.0 allows remote DNS servers to cause a denial of service (memory exhaustion and slave server crash) via a large zone transfer for (1) DDNS, (2) AXFR, or (3)...

8.6CVSS

8.1AI Score

0.006EPSS

2017-02-09 03:59 PM
23
4