CVE-2023-50868

EPSS 0.05 % (18th)
0.05% Progress
Advisories 69
NVD Status Awaiting Analysis

The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in a random subdomain attack, aka the "NSEC3" issue. The RFC 5155 specification implies that an algorithm must perform thousands of iterations of a hash function in certain situations.

CVE Status
PUBLISHED
NVD Status
Awaiting Analysis
CNA
MITRE
Published Date
2024-02-14 16:15:45
(7 months ago)
Updated Date
2024-06-10 17:16:16
(3 months ago)
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...