Input validation error in Knot Resolver - CVE-2019-10191
Published: November 7, 2019
Knot Resolver
Nic
Description
The vulnerability allows a remote attacker to hijack domain on the target system.
The vulnerability exists due to insufficient validation of user-supplied input in DNS resolver. A remote attacker can downgrade DNSSEC-secure domains to DNSSEC-insecure state, opening possibility of domain hijack using attacks against insecure DNS protocol.