VYPR

Nsd

by Nlnetlabs

Source repositories

CVEs (10)

  • CVE-2019-13207CriJul 3, 2019
    risk 0.64cvss 9.8epss 0.02

    nsd-checkzone in NLnet Labs NSD 4.2.0 has a Stack-based Buffer Overflow in the dname_concatenate() function in dname.c.

  • CVE-2026-12244HigJun 25, 2026
    risk 0.50cvss 8.8epss 0.00

    If NSD is configured as secondary for a zone, the primary of that zone can crash NSD with an AXFR containing a DNS message with a special crafted SVCB RR with an rdata size of 65512, that let's an (uint16_t) variable that is used to allocate space needed for the RR wrap (because…

  • CVE-2016-6173HigFeb 9, 2017
    risk 0.49cvss 7.5epss 0.03

    NSD before 4.1.11 allows remote DNS master servers to cause a denial of service (/tmp disk consumption and slave server crash) via a zone transfer with unlimited data.

  • CVE-2026-12246HigJun 25, 2026
    risk 0.46cvss 8.1epss 0.00

    NSD version 4.14.0 introduced a bug where a specially crafted APL RR, with an adflength larger than permitted for the address family will overwrite the stack when the zone is written to disk, with a maximum of 111 attacker controlled bytes.

  • CVE-2026-12490HigJun 25, 2026
    risk 0.42cvss 7.5epss 0.00

    When a provide-xfr is given with a tls-auth-name, a secondary requesting a transfer should provide a client certificate with that name. However, no client certificate is needed when the request comes in over TLS over the regular tls-port (and not the tls-auth-port) or over over…

  • CVE-2026-12245HigJun 25, 2026
    risk 0.42cvss 7.5epss 0.00

    NSD from version 4.13.0 has a heap use-after-free bug in logging errors on TLS connections, causing a crash of the server process, which can be triggered trivially by sending a DNS query over a DoT connection, and closing the connection without reading the response.

  • CVE-2013-5661MedNov 5, 2019
    risk 0.39cvss 5.9epss 0.03

    Cache Poisoning issue exists in DNS Response Rate Limiting.

  • CVE-2020-28935MedDec 7, 2020
    risk 0.36cvss 5.5epss 0.00

    NLnet Labs Unbound, up to and including version 1.12.0, and NLnet Labs NSD, up to and including version 4.3.3, contain a local vulnerability that would allow for a local symlink attack. When writing the PID file, Unbound and NSD create the file if it is not there, or open an…

  • CVE-2012-2978Jul 27, 2012
    risk 0.01cvss epss 0.09

    query.c in NSD 3.0.x through 3.0.8, 3.1.x through 3.1.1, and 3.2.x before 3.2.12 allows remote attackers to cause a denial of service (NULL pointer dereference and child process crash) via a crafted DNS packet.

  • CVE-2009-1755May 22, 2009
    risk 0.00cvss epss 0.03

    Off-by-one error in the packet_read_query_section function in packet.c in nsd 3.2.1, and process_query_section in query.c in nsd 2.3.7, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors that trigger a buffer…