CyberRota Analysis
AI-GeneratedKnot Resolver versions prior to 6.4.1 are vulnerable to a heap-based buffer overflow in the DNS-over-QUIC (DoQ) receive path, which can be exploited for remote code execution. This vulnerability poses a significant risk to systems utilizing Knot Resolver, particularly those exposed to untrusted networks. Organizations using affected versions should prioritize patching to mitigate potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Knot Resolver before 6.4.1 allows remote code execution via a heap-based buffer overflow in the DoQ (DNS-over-QUIC) receive path.