Medium severity5.3NVD Advisory· Published Jun 25, 2026· Updated Jun 25, 2026
CVE-2026-40209
CVE-2026-40209
Description
An attacker might be able to cause outgoing TCP connections to backend to be stuck until a timeout occurs instead of being released immediately, by sending IXFR queries. This could be used to cause a denial of service if there is a limit to the number of concurrent connections to this backend, or if the process runs out of file descriptors.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.