Vulnerabilidad · Publicado 16/09/2026
NLnet Labs Unbound versiones hasta 1.26.0 es vulnerable a desbordamiento de búfer en memoria durante el procesamiento de respuestas TCP con nombres de consulta de 255 caracteres. Un atacante controlando un servidor DNS malicioso puede explotar esta falla para ejecutar código arbitrario o causar negación de servicio en recursores DNS de empresas. El impacto es alta en infraestructuras de LATAM que dependen de Unbound para resolución DNS.
In NLnet Labs Unbound up to and including 1.26.0, a 255 length query name with a large TCP response can lead to a heap buffer overflow during the RRSet canonicalisation routine. This is caused by missing to add the first owner name into the buffer length check. A malicious actor operating a malicious name server or tampering with an incoming response to Unbound (canonicalisation happens before DNSSEC validation), can trigger the vulnerability.
Score: 7.5/10 — Severidad: HIGH — Estado NIST: Received
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-122
Publicado en NIST NVD.