Systemd · Systemd-Resolved · CVE-2023-7008
**Name of the Vulnerable Software and Affected Versions**
systemd-resolved (affected versions not specified)
**Description**
The issue is related to insufficient authentication checks of messages from DNS clients in the systemd-resolved service, which manages network connections and domain name resolutions. This may allow a remote attacker to modify DNS records protected by DNSSEC by sending specially crafted DNS requests. The vulnerability can also enable man-in-the-middle attackers or the upstream DNS resolver to manipulate records of DNSSEC-signed domains, even when these records lack a signature.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.