Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

NLnet Labs — Vulnerabilities & Security Advisories 64

Browse all 64 CVE security advisories affecting NLnet Labs. AI-powered Chinese analysis, POCs, and references for each vulnerability.

NLnet Labs operates as a non-profit research organization primarily focused on developing open-source software for the Domain Name System (DNS) and internet infrastructure. Its most prominent contribution is Unbound, a validating, recursive, and caching DNS resolver widely deployed for its emphasis on security and privacy. Historically, vulnerabilities associated with its software have predominantly involved memory corruption issues, such as buffer overflows and use-after-free errors, rather than application-layer flaws like cross-site scripting. These defects typically stem from low-level C code implementation details. While no catastrophic, widespread breaches have defined its public history, the presence of twenty recorded CVEs indicates ongoing challenges in maintaining strict memory safety within complex network protocols. The organization generally addresses these findings through prompt patches, reflecting a standard open-source maintenance lifecycle where technical rigor in cryptographic and network logic is prioritized over commercial feature expansion.

CVE IDTitleCVSSSeverityPublished
CVE-2026-56444 Degradation of resolution service when 'discard-timeout' and 'serve-expired-client-timeout' are combined in unusual configuration — UnboundCWE-772 5.9 Medium2026-07-22
CVE-2026-56416 Possible heap buffer overflow when validator canonicalizes RDATA that contains domain name — UnboundCWE-354 4.8 Medium2026-07-22
CVE-2026-55991 Remote DNS-over-QUIC (DoQ) flow-control assertion failure in libngtcp2 — UnboundCWE-195 5.9 Medium2026-07-22
CVE-2026-55990 Packet of death for a DNSCrypt misconfigured Unbound — UnboundCWE-457 5.9 Medium2026-07-22
CVE-2026-55973 'dns-error-reporting: yes' leads to stack buffer overflow — UnboundCWE-20 7.5 High2026-07-22
CVE-2026-55717 'serve-expired-client-timeout' and 'response-ip' CNAME redirect could lead to a crash — UnboundCWE-476 5.9 Medium2026-07-22
CVE-2026-55708 Privacy/configuration issue when adding local data in views through 'unbound-control' — UnboundCWE-1188 3.1 Low2026-07-22
CVE-2026-54478 DNS Cookie bypass when combined with proxy-protocol use — UnboundCWE-290 3.7 Low2026-07-22
CVE-2026-52863 Memory corruption could lead to crash and denial of service — UnboundCWE-416 5.9 Medium2026-07-22
CVE-2026-50252 Possible cache poisoning attack by mapping source port population per thread — UnboundCWE-349--2026-07-22
CVE-2026-50251 Attacker supplied '0.0.0.0'/'::' glue triggers defensive full-cache flush — UnboundCWE-184 5.3 Medium2026-07-22
CVE-2026-50248 BOGUS configured primary hostname accepted for XFR in auth/rpz zones — UnboundCWE-345 6.5 Medium2026-07-22
CVE-2026-50243 'response-ip'/'rpz' can rewrite BOGUS answers instead of returning SERVFAIL — UnboundCWE-348--2026-07-22
CVE-2026-50046 Possible heap use-after-free in an error path when a DoT forwarded query is jostled out — UnboundCWE-416 5.9 Medium2026-07-22
CVE-2026-50045 'max-global-quota' reset by DNSSEC validation restarts — UnboundCWE-406 5.3 Medium2026-07-22
CVE-2026-46582 A wildcard replay, as another piece of data, triggers poisoning in the serve expired reply path — UnboundCWE-358 3.7 Low2026-07-22
CVE-2026-44690 Cross-zone wildcard cache poisoning via RRSIG.labels manipulation — UnboundCWE-345 7.5 High2026-07-22
CVE-2026-44687 Off-by-one error in 'harden-below-nxdomain' logic can shadow a stub/forward zone by a legitimate parent's NXDOMAIN — UnboundCWE-193 3.7 Low2026-07-22
CVE-2026-44621 Libunbound applications configured with 'unwanted-reply-threshold' could eventually be abruptly terminated — UnboundCWE-754 5.9 Medium2026-07-22
CVE-2026-42955 Extra fix for CVE-2026-40622 to also clamp the TTL of A/AAAA records disallowing a one-time 'ghost domain' delegation renewal via glue records — UnboundCWE-672 3.7 Low2026-07-22
CVE-2026-41637 Degradation of resolution service from improperly accounted client-terminated DNS-over-QUIC queries — UnboundCWE-772 3.7 Low2026-07-22
CVE-2026-40691 Packet of death for DNSCrypt over TCP — UnboundCWE-122 7.5 High2026-07-22
CVE-2026-32665 Remote DNS-over-QUIC denial of service due to `quic-size` budget bypass — UnboundCWE-1284 7.5 High2026-07-22
CVE-2026-14586 Assertion in libngtcp2 when under pressure in high concurrency DNS-over-QUIC environments — UnboundCWE-617 5.9 Medium2026-07-22
CVE-2026-12490 Bypass of client certificate verification with transfer over TLS — NSDCWE-306--2026-06-25
CVE-2026-12246 Out of bounds stack write with crafted APL RR — NSDCWE-120--2026-06-25
CVE-2026-12245 Denial of DNS over TLS service by any DoT client — NSDCWE-416--2026-06-25
CVE-2026-12244 Heap overflow and crash with crafted SVCB RR — NSDCWE-190--2026-06-25
CVE-2026-10846 Insufficient verification that responses belong to a query — ldnsCWE-346--2026-06-10
CVE-2026-49235 Routinator crashes on specifically crafted RRDP XML files — RoutinatorCWE-755--2026-06-08

This page lists every published CVE security advisory associated with NLnet Labs. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.