CVE-2020-12662: High severity unbound vulnerability
Unbound before 1.10.1 has Insufficient Control of Network Message Volume, aka an "NXNSAttack" issue. This is triggered by random subdomains in the NSDNAME in NS records.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the CVE ID of this vulnerability?
The CVE ID of this vulnerability is CVE-2020-12662.
What is the severity level of CVE-2020-12662?
The severity level of CVE-2020-12662 is high.
What is the affected software for CVE-2020-12662?
The affected software for CVE-2020-12662 includes Unbound versions 1.6.7-1ubuntu2.3, 1.9.0-2ubuntu1.1, 1.10.1-1, 1.9.4-2ubuntu1.1, and 1.10.1.
What is the remedy for CVE-2020-12662?
The remedy for CVE-2020-12662 is to update Unbound to version 1.10.1 or apply the specific versions mentioned for each affected software.
Where can I find more information about CVE-2020-12662?
More information about CVE-2020-12662 can be found at the following references: [link1](http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00067.html), [link2](http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00069.html), and [link3](http://www.nxnsattack.com).