Medium severity4.3NVD Advisory· Published Jun 25, 2026· Updated Jun 25, 2026
CVE-2026-42005
CVE-2026-42005
Description
An attacker can send a web request that causes unlimited memory allocation in the internal web server, leading to a denial of service. The internal web server is disabled by default.
Affected products
2- osv-coords2 versionspkg:rpm/opensuse/dnsdist&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/dnsdist&distro=openSUSE%20Leap%2016.0
< 2.0.7-1.1+ 1 more
- (no CPE)range: < 2.0.7-1.1
- (no CPE)range: < 1.9.15-160000.1.1
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.