XACK DNS 1.11.0 to 1.11.4, 1.10.0 to 1.10.8, 1.8.0 to 1.8.23, 1.7.0 to 1.7.18, and versions before 1.7.0 allow remote attackers to cause a denial of service condition resulting in degradation of the recursive resolvers performance or compromising the recursive resolver as a reflector in a reflection attack.
The product does not properly control the amount of recursion that takes place, consuming excessive resources, such as allocated memory or the program stack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Xack_dns | Xack | * | 1.7.18 (including) |
Xack_dns | Xack | 1.8.0 (including) | 1.8.23 (including) |
Xack_dns | Xack | 1.10.0 (including) | 1.10.8 (including) |
Xack_dns | Xack | 1.11.0 (including) | 1.11.4 (including) |