CVE-2022-2795
בינונית 5.3
תיאור (מקור, אנגלית)
By flooding the target resolver with queries exploiting this flaw an attacker can significantly impair the resolver's performance, effectively denying legitimate clients access to the DNS resolution service.
מדדים
- CVSS 3.1
-
5.3 (MEDIUM)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L - EPSS — סבירות ניצול
- 2% (אחוזון 100) נכון ל-17/9/2026
מוצרים מושפעים
isc: bind; debian: debian linux; fedoraproject: fedora
קישורים
- https://kb.isc.org/docs/cve-2022-2795 PatchVendor Advisory
- https://kb.isc.org/docs/cve-2022-2795 PatchVendor Advisory
- http://www.openwall.com/lists/oss-security/2022/09/21/3 Mailing ListPatchThird Party Advisory
- http://www.openwall.com/lists/oss-security/2022/09/21/3 Mailing ListPatchThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2022/10/msg00007.html Mailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedorap…
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedorap…
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedorap…
- https://security.gentoo.org/glsa/202210-25 Third Party Advisory
- https://www.debian.org/security/2022/dsa-5235 Third Party Advisory