PT-2023-15652 · Technitium · Technitium Dns Server

Xiang Li

·

Published

2023-01-13

·

Updated

2025-04-07

·

CVE-2022-48256

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Technitium DNS Server versions prior to 10.0
Description The issue allows a self-CNAME denial-of-service attack. This occurs when a CNAME loop causes an answer to contain hundreds of records.
Recommendations For versions prior to 10.0, update to version 10.0 or later to resolve the issue.

Fix

DoS

Infinite Loop

Weakness Enumeration

Related Identifiers

CVE-2022-48256

Affected Products

Technitium Dns Server