Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Agentoak

#44444of 53,619
5.9Total CVSS
Vulnerabilities · 1
PT-2023-8454
5.9
2022-12-08
Systemd · Systemd-Resolved · CVE-2023-7008
**Name of the Vulnerable Software and Affected Versions** systemd-resolved (affected versions not specified) **Description** The issue is related to insufficient authentication checks of messages from DNS clients in the systemd-resolved service, which manages network connections and domain name resolutions. This may allow a remote attacker to modify DNS records protected by DNSSEC by sending specially crafted DNS requests. The vulnerability can also enable man-in-the-middle attackers or the upstream DNS resolver to manipulate records of DNSSEC-signed domains, even when these records lack a signature. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.