#VU29959 Input validation error in Unbound - CVE-2020-10772
Published: July 15, 2020 / Updated: July 27, 2020
Unbound
NLnet Labs
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due incomplete fix for vulnerability SB2020052127 #1 (CVE-2020-12662). A remote attacker who controls a malicious DNS server can send a specially crafted response and perform a denial of service (DoS) attack against third-party DNS servers.