[WID-SEC-2022-0461] CoreDNS: Mehrere Schwachstellen ermöglichen Denial of Service CVSS Base Score 7.5 (hoch) CVSS Temporal Score 6.5 (mittel) Remoteangriff ja Datum 23.06.2022 Stand UPDATE 10.08.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux UNIX Produktbeschreibung CoreDNS ist ein DNS server. Produkte UPDATE 29.09.2024 SUSE openSUSE UPDATE 15.11.2022 Oracle Linux UPDATE 03.10.2022 JFrog Artifactory <7.46.3 UPDATE 29.09.2022 Amazon Linux 2 UPDATE 17.08.2022 SUSE Linux UPDATE 10.08.2022 Red Hat Enterprise Linux 23.06.2022 Open Source CoreDNS <1.9.3 Angriff Angriff Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in CoreDNS ausnutzen, um einen Denial of Service Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben
Multiple vulnerabilities in CoreDNS allow a remote, anonymous attacker to conduct a denial-of-service attack. The CVSS base score for these issues is 7.5 (High). Affected versions include open-source CoreDNS prior to version 1.9.3, and the article lists specific updates for various Linux distributions and products released through September 2024.