Elias Heftrig, Haya Schulmann, Niklas Vogel, and Michael Waidner discovered that Unbound incorrectly handled validating DNSSEC messages. A remote attacker could possibly use this issue to cause Unbound to consume resources, leading to a denial of service. (CVE-2023-50387)
It was discovered that Unbound incorrectly handled preparing an NSEC3 closest encloser proof. A remote attacker could possibly use this issue to cause Unbound to consume resources, leading to a denial of service. (CVE-2023-50868)
{ "binaries": [ { "binary_name": "libunbound-dev", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "libunbound8", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "libunbound8-dbgsym", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "python-unbound", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "python-unbound-dbgsym", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "python3-unbound", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "python3-unbound-dbgsym", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "unbound", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "unbound-anchor", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "unbound-anchor-dbgsym", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "unbound-dbgsym", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "unbound-host", "binary_version": "1.9.4-2ubuntu1.5" }, { "binary_name": "unbound-host-dbgsym", "binary_version": "1.9.4-2ubuntu1.5" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_name": "libunbound-dev", "binary_version": "1.13.1-1ubuntu5.4" }, { "binary_name": "libunbound8", "binary_version": "1.13.1-1ubuntu5.4" }, { "binary_name": "libunbound8-dbgsym", "binary_version": "1.13.1-1ubuntu5.4" }, { "binary_name": "python3-unbound", "binary_version": "1.13.1-1ubuntu5.4" }, { "binary_name": "python3-unbound-dbgsym", "binary_version": "1.13.1-1ubuntu5.4" }, { "binary_name": "unbound", "binary_version": "1.13.1-1ubuntu5.4" }, { "binary_name": "unbound-anchor", "binary_version": "1.13.1-1ubuntu5.4" }, { "binary_name": "unbound-anchor-dbgsym", "binary_version": "1.13.1-1ubuntu5.4" }, { "binary_name": "unbound-dbgsym", "binary_version": "1.13.1-1ubuntu5.4" }, { "binary_name": "unbound-host", "binary_version": "1.13.1-1ubuntu5.4" }, { "binary_name": "unbound-host-dbgsym", "binary_version": "1.13.1-1ubuntu5.4" } ], "availability": "No subscription required" }