Security Advisory

CVE-2026-12245

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-25 05:24:18
Last updated 2026-06-25 12:42:50
Assigner NLnet Labs
CVSS score 8.7
State PUBLISHED

Description

NSD from version 4.13.0 has a heap use-after-free bug in logging errors on TLS connections, causing a crash of the server process, which can be triggered trivially by sending a DNS query over a DoT connection, and closing the connection without reading the response.