Medium severity5.9NVD Advisory· Published Dec 23, 2023· Updated Jun 17, 2026
CVE-2023-7008
CVE-2023-7008
Description
A vulnerability was found in systemd-resolved. This issue may allow systemd-resolved to accept records of DNSSEC-signed domains even when they have no signature, allowing man-in-the-middles (or the upstream DNS resolver) to manipulate records.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
26cpe:/o:redhat:enterprise_linux:8::baseos+ 1 more
- cpe:/o:redhat:enterprise_linux:8::baseosrange: 0:239-82.el8
- cpe:/a:redhat:enterprise_linux:9::crbrange: 0:252-32.el9_4
- osv-coords21 versionspkg:rpm/suse/systemd&distro=SUSE%20Linux%20Enterprise%20Micro%205.3pkg:rpm/opensuse/systemd&distro=openSUSE%20Leap%2015.5pkg:rpm/suse/systemd&distro=SUSE%20Linux%20Enterprise%20Micro%205.4pkg:rpm/opensuse/systemd&distro=openSUSE%20Tumbleweedpkg:rpm/suse/systemd&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Package%20Hub%2015%20SP5pkg:rpm/almalinux/systemd-rpm-macrospkg:rpm/almalinux/systemd-udevpkg:rpm/almalinux/systemd-testspkg:rpm/suse/systemd&distro=SUSE%20Linux%20Enterprise%20Micro%205.5pkg:rpm/opensuse/systemd&distro=openSUSE%20Leap%20Micro%205.5pkg:rpm/almalinux/rhel-net-naming-sysattrspkg:rpm/almalinux/systemdpkg:rpm/almalinux/systemd-boot-unsignedpkg:rpm/almalinux/systemd-containerpkg:rpm/almalinux/systemd-develpkg:rpm/almalinux/systemd-journal-remotepkg:rpm/almalinux/systemd-libspkg:rpm/almalinux/systemd-oomdpkg:rpm/almalinux/systemd-pampkg:rpm/almalinux/systemd-resolvedpkg:rpm/suse/systemd&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP5
< 249.17-150400.8.43.1+ 20 more
- (no CPE)range: < 249.17-150400.8.43.1
- (no CPE)range: < 249.17-150400.8.43.1
- (no CPE)range: < 249.17-150400.8.43.1
- (no CPE)range: < 254.8-4.1
- (no CPE)range: < 249.17-150400.8.43.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 239-82.el8
- (no CPE)range: < 249.17-150400.8.43.1
- (no CPE)range: < 249.17-150400.8.43.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 252-32.el9_4.alma.1
- (no CPE)range: < 249.17-150400.8.43.1
- cpe:2.3:a:systemd_project:systemd:25:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
10- access.redhat.com/security/cve/CVE-2023-7008nvdVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue Tracking
- bugzilla.redhat.com/show_bug.cginvdIssue Tracking
- github.com/systemd/systemd/issues/25676nvdIssue Tracking
- access.redhat.com/errata/RHSA-2024:2463nvd
- access.redhat.com/errata/RHSA-2024:3203nvd
- lists.debian.org/debian-lts-announce/2024/09/msg00001.htmlnvd
- lists.fedoraproject.org/archives/list/[email protected]/message/4GMDEG5PKONWNHOEYSUDRT6JEOISRMN2/nvd
- lists.fedoraproject.org/archives/list/[email protected]/message/QHNBXGKJWISJETTTDTZKTBFIBJUOSLKL/nvd
- security.netapp.com/advisory/ntap-20241122-0004/nvd
News mentions
0No linked articles in our index yet.