DNRD (aka Domain Name Relay Daemon) 2.20.3 forwards and caches DNS queries with the CD (aka checking disabled) bit set to 1. This leads to disabling of DNSSEC protection provided by upstream resolvers.
References
Link | Resource |
---|---|
http://dnrd.sourceforge.net/ | Product Third Party Advisory |
https://www.openwall.com/lists/oss-security/2022/08/14/1 | Mailing List Third Party Advisory |
https://www.usenix.org/conference/usenixsecurity22/presentation/jeitner | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2022-08-15 12:15
Updated : 2024-02-28 19:29
NVD link : CVE-2022-33992
Mitre link : CVE-2022-33992
CVE.ORG link : CVE-2022-33992
JSON object : View
Products Affected
domain_name_relay_daemon_project
- domain_name_relay_daemon
CWE