a2cb7c31-9c79-11ea-a9c2-d05099c0ae8cunbound -- mutliple vulnerabilities

NLNetLabs reports:

This release fixes CVE-2020-12662 and CVE-2020-12663.

Bug Fixes:

  • CVE-2020-12662 Unbound can be tricked into amplifying an incoming query into a large number of queries directed to a target.
  • CVE-2020-12663 Malformed answers from upstream name servers can be used to make Unbound unresponsive.

Discovery 2020-05-19
Entry 2020-05-22
Modified 2020-07-10
lt 1.10.1

ge 12.1 lt 12.1_7

ge 11.4 lt 11.4_1

ge 11.3 lt 11.3_11