https://seclists.org/oss-sec/2026/q2/863: ldns insufficiently verifies that sponses belong to a query
Published Jun 10, 2026
·Updated
Affected Software
1 affected component
Nlnet Labs ldns>=1.2.0<=1.9.0
Frequently Asked Questions
1
What is the severity of CVE-2026-10846?
CVE-2026-10846 has a severity score of 8.2, indicating a high risk level.
2
What versions of ldns are affected by CVE-2026-10846?
CVE-2026-10846 affects ldns versions from 1.2.0 up to and including 1.9.0.
3
How do I fix CVE-2026-10846?
To fix CVE-2026-10846, you should apply the provided patch or upgrade to a patched version of ldns.
4
What type of vulnerability is CVE-2026-10846?
CVE-2026-10846 is a vulnerability that insufficiently verifies that responses belong to a query.
5
What impact does CVE-2026-10846 have on my system?
The vulnerability could potentially allow unauthorized responses to be accepted, leading to security risks such as data integrity issues.