Vulnerabilities > CVE-2018-1110 - Unspecified vulnerability in NIC Knot Resolver

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
nic
nessus

Summary

A flaw was found in knot-resolver before version 2.3.0. Malformed DNS messages may cause denial of service.

Nessus

  • NASL familyFedora Local Security Checks
    NASL idFEDORA_2018-A120D509AB.NASL
    descriptionKnot Resolver 2.3.0 (2018-04-23) ================================ Security -------- - fix CVE-2018-1110: denial of service triggered by malformed DNS messages (!550, !558, security!2, security!4) - increase resilience against slow lorris attack (security!5) Bugfixes -------- - validation: fix SERVFAIL in case of CNAME to NXDOMAIN in a single zone (!538) - validation: fix SERVFAIL for DS . query (!544) - lib/resolve: don
    last seen2020-06-05
    modified2018-05-11
    plugin id109709
    published2018-05-11
    reporterThis script is Copyright (C) 2018-2020 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/109709
    titleFedora 27 : knot-resolver (2018-a120d509ab)
  • NASL familyFedora Local Security Checks
    NASL idFEDORA_2018-389BC4E911.NASL
    descriptionKnot Resolver 2.3.0 (2018-04-23) ================================ Security -------- - fix CVE-2018-1110: denial of service triggered by malformed DNS messages (!550, !558, security!2, security!4) - increase resilience against slow lorris attack (security!5) Bugfixes -------- - validation: fix SERVFAIL in case of CNAME to NXDOMAIN in a single zone (!538) - validation: fix SERVFAIL for DS . query (!544) - lib/resolve: don
    last seen2020-06-05
    modified2019-01-03
    plugin id120353
    published2019-01-03
    reporterThis script is Copyright (C) 2019-2020 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/120353
    titleFedora 28 : knot-resolver (2018-389bc4e911)
  • NASL familyFedora Local Security Checks
    NASL idFEDORA_2018-0C0671072B.NASL
    descriptionKnot Resolver 2.3.0 (2018-04-23) ================================ Security -------- - fix CVE-2018-1110: denial of service triggered by malformed DNS messages (!550, !558, security!2, security!4) - increase resilience against slow lorris attack (security!5) Bugfixes -------- - validation: fix SERVFAIL in case of CNAME to NXDOMAIN in a single zone (!538) - validation: fix SERVFAIL for DS . query (!544) - lib/resolve: don
    last seen2020-06-05
    modified2018-05-11
    plugin id109702
    published2018-05-11
    reporterThis script is Copyright (C) 2018-2020 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/109702
    titleFedora 26 : knot-resolver (2018-0c0671072b)