Vulnerability Report: GO-2024-3134
- CVE-2023-30464, GHSA-h92q-fgpp-qhrq
- Affects: github.com/coredns/coredns
- Published: Sep 25, 2024
- Modified: Sep 26, 2024
CoreDNS enables attackers to achieve DNS cache poisoning and inject fake responses via a birthday attack.
For detailed information about this vulnerability, visit https://github.com/advisories/GHSA-h92q-fgpp-qhrq.
Affected Packages
-
PathGo VersionsSymbols
-
before v1.11.0
Aliases
References
- https://github.com/advisories/GHSA-h92q-fgpp-qhrq
- https://github.com/coredns/coredns/commit/604a902e2c7e0317aecaa3666124079c75a31573
- https://gist.github.com/idealeer/e41c7fb3b661d4262d0b6f21e12168ba
- https://vuln.go.dev/ID/GO-2024-3134.json
Feedback
See anything missing or incorrect?
Suggest an edit to this report.