Origin validation error in Graylog - CVE-2023-41045
Published: July 5, 2023 / Updated: June 25, 2026
Graylog
Detailed vulnerability description
The vulnerability allows a remote attacker to poison Graylog's DNS lookup cache.
The vulnerability exists due to improper source port usage in the DNS lookup functionality when sending DNS queries. A remote attacker can inject forged DNS responses to poison Graylog's DNS lookup cache.
Exploitation is described as unlikely in many setups.