he Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in a random subdomain attack, aka the "NSEC3" issue. The RFC 5155 specification implies that an algorithm must perform thousands of iterations of a hash function in certain situations.
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
| AND |
|
Configuration 7 (hide)
|
Configuration 8 (hide)
| AND |
|
23 Dec 2025, 20:20
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:redhat:enterprise_linux:8.4:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* cpe:2.3:o:netapp:bootstrap_os:-:*:*:*:*:*:*:* cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:* cpe:2.3:h:netapp:h700s:-:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* cpe:2.3:a:netapp:hci_baseboard_management_controller:-:*:*:*:*:*:*:* cpe:2.3:a:isc:bind:*:*:*:*:supported_preview:*:*:* cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:* cpe:2.3:h:netapp:h410c:-:*:*:*:*:*:*:* cpe:2.3:a:isc:bind:*:s1:*:*:supported_preview:*:*:* cpe:2.3:a:powerdns:recursor:*:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:* cpe:2.3:h:netapp:h300s:-:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:8.2:*:*:*:*:*:*:* cpe:2.3:h:netapp:hci_compute_node:-:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:* cpe:2.3:h:netapp:h410s:-:*:*:*:*:*:*:* cpe:2.3:h:netapp:h500s:-:*:*:*:*:*:*:* |
|
| References | () http://www.openwall.com/lists/oss-security/2024/02/16/2 - Issue Tracking, Mailing List | |
| References | () http://www.openwall.com/lists/oss-security/2024/02/16/3 - Issue Tracking, Mailing List | |
| References | () https://access.redhat.com/security/cve/CVE-2023-50868 - Vendor Advisory | |
| References | () https://bugzilla.suse.com/show_bug.cgi?id=1219826 - Issue Tracking | |
| References | () https://datatracker.ietf.org/doc/html/rfc5155 - Technical Description | |
| References | () https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html - Vendor Advisory | |
| References | () https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1 - Release Notes | |
| References | () https://kb.isc.org/docs/cve-2023-50868 - Third Party Advisory | |
| References | () https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html - Vendor Advisory, Mailing List | |
| References | () https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/ - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/ - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/ - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/ - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/ - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/ - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/ - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ - Vendor Advisory, Mailing List | |
| References | () https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html - Mailing List, Release Notes | |
| References | () https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/ - Release Notes | |
| References | () https://security.netapp.com/advisory/ntap-20240307-0008/ - Vendor Advisory | |
| References | () https://www.isc.org/blogs/2024-bind-security-release/ - Exploit, Mitigation, Press/Media Coverage | |
| References | () https://lists.debian.org/debian-lts-announce/2024/09/msg00001.html - Vendor Advisory, Mailing List | |
| References | () https://lists.debian.org/debian-lts-announce/2024/11/msg00035.html - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/[email protected]/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/[email protected]/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ - Vendor Advisory, Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/[email protected]/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ - Vendor Advisory, Mailing List | |
| First Time |
Netapp h700s
Redhat enterprise Linux Powerdns Fedoraproject fedora Isc bind Redhat Netapp Netapp hci Compute Node Fedoraproject Netapp h410c Netapp h410s Debian Netapp bootstrap Os Netapp hci Baseboard Management Controller Netapp h300s Netapp h500s Debian debian Linux Powerdns recursor Netapp active Iq Unified Manager Isc |
04 Nov 2025, 19:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
04 Nov 2025, 17:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
03 Nov 2025, 22:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
12 May 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
| CWE | CWE-400 |
21 Nov 2024, 08:37
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://www.openwall.com/lists/oss-security/2024/02/16/2 - | |
| References | () http://www.openwall.com/lists/oss-security/2024/02/16/3 - | |
| References | () https://access.redhat.com/security/cve/CVE-2023-50868 - | |
| References | () https://bugzilla.suse.com/show_bug.cgi?id=1219826 - | |
| References | () https://datatracker.ietf.org/doc/html/rfc5155 - | |
| References | () https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html - | |
| References | () https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1 - | |
| References | () https://kb.isc.org/docs/cve-2023-50868 - | |
| References | () https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html - | |
| References | () https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ - | |
| References | () https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html - | |
| References | () https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/ - | |
| References | () https://security.netapp.com/advisory/ntap-20240307-0008/ - | |
| References | () https://www.isc.org/blogs/2024-bind-security-release/ - |
10 Jun 2024, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Published : 2024-02-14 16:15
Updated : 2025-12-23 20:20
NVD link : CVE-2023-50868
Mitre link : CVE-2023-50868
CVE.ORG link : CVE-2023-50868
JSON object : View
Uncontrolled Resource Consumption