Uncontrolled Memory Allocation in dnsdist - CVE-2026-24030
Published: April 23, 2026
dnsdist
Detailed vulnerability description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to uncontrolled memory allocation in DNS over QUIC and DNS over HTTP/3 payload processing when handling DoQ or DoH3 queries. A remote attacker can send DoQ or DoH3 queries to cause a denial of service.
In some environments the condition results in an exception and connection closure, but in others it might lead to an out-of-memory state and process termination.