Vulnerabilities > Unbound > Unbound > 0.09

DATE CVE VULNERABILITY TITLE RISK
2011-12-20 CVE-2011-4869 Resource Management Errors vulnerability in Unbound
validator/val_nsec3.c in Unbound before 1.4.13p2 does not properly perform proof processing for NSEC3-signed zones, which allows remote DNS servers to cause a denial of service (daemon crash) via a malformed response that lacks expected NSEC3 records, a different vulnerability than CVE-2011-4528.
network
low complexity
unbound CWE-399
7.8
2011-12-20 CVE-2011-4528 Resource Management Errors vulnerability in Unbound
Unbound before 1.4.13p2 attempts to free unallocated memory during processing of duplicate CNAME records in a signed zone, which allows remote DNS servers to cause a denial of service (daemon crash) via a crafted response.
network
low complexity
unbound CWE-399
5.0