Search CVE reports


Toggle filters

1 – 10 of 16 results


CVE-2026-27854

Medium priority
Needs evaluation

[Unknown description]

1 affected package

dnsdist

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsdist Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-27853

Medium priority
Needs evaluation

[Unknown description]

1 affected package

dnsdist

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsdist Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-24030

Medium priority
Needs evaluation

[Unknown description]

1 affected package

dnsdist

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsdist Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-24029

Medium priority
Needs evaluation

[Unknown description]

1 affected package

dnsdist

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsdist Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-24028

Medium priority
Needs evaluation

[Unknown description]

1 affected package

dnsdist

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsdist Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-0397

Medium priority
Needs evaluation

[Unknown description]

1 affected package

dnsdist

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsdist Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-0396

Medium priority
Needs evaluation

[Unknown description]

1 affected package

dnsdist

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsdist Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-30187

Medium priority
Fixed

In some circumstances, when DNSdist is configured to use the nghttp2 library to process incoming DNS over HTTPS queries, an attacker might be able to cause a denial of service by crafting a DoH exchange that triggers an unbounded...

1 affected package

dnsdist

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsdist Not affected Not affected Not affected Not affected
Show less packages

CVE-2025-8671

Medium priority

Some fixes available 2 of 23

A mismatch caused by client-triggered server-sent stream resets between HTTP/2 specifications and the internal architectures of some HTTP/2 implementations may result in excessive server resource consumption leading to...

5 affected packages

h2o, haproxy, lighttpd, varnish, dnsdist

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
h2o Needs evaluation Needs evaluation Needs evaluation Needs evaluation
haproxy Not affected Not affected Not affected Not affected
lighttpd Needs evaluation Needs evaluation Needs evaluation Needs evaluation
varnish Needs evaluation Needs evaluation Needs evaluation Needs evaluation
dnsdist Fixed Not affected Not affected Not affected
Show less packages

CVE-2025-30193

Medium priority

Some fixes available 2 of 4

In some circumstances, when DNSdist is configured to allow an unlimited number of queries on a single, incoming TCP connection from a client, an attacker can cause a denial of service by crafting a TCP exchange that triggers an...

1 affected package

dnsdist

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsdist Fixed Fixed Not affected Not affected
Show less packages