CVE-2023-50868

The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in a random subdomain attack, aka the "NSEC3" issue. The RFC 5155 specification implies that an algorithm must perform thousands of iterations of a hash function in certain situations.
References
Link Resource
http://www.openwall.com/lists/oss-security/2024/02/16/2 Issue Tracking Mailing List
http://www.openwall.com/lists/oss-security/2024/02/16/3 Issue Tracking Mailing List
https://access.redhat.com/security/cve/CVE-2023-50868 Vendor Advisory
https://bugzilla.suse.com/show_bug.cgi?id=1219826 Issue Tracking
https://datatracker.ietf.org/doc/html/rfc5155 Technical Description
https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html Vendor Advisory
https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1 Release Notes
https://kb.isc.org/docs/cve-2023-50868 Third Party Advisory
https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html Vendor Advisory Mailing List
https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ Vendor Advisory Mailing List
https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html Mailing List Release Notes
https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/ Release Notes
https://security.netapp.com/advisory/ntap-20240307-0008/ Vendor Advisory
https://www.isc.org/blogs/2024-bind-security-release/ Exploit Mitigation Press/Media Coverage
http://www.openwall.com/lists/oss-security/2024/02/16/2 Issue Tracking Mailing List
http://www.openwall.com/lists/oss-security/2024/02/16/3 Issue Tracking Mailing List
https://access.redhat.com/security/cve/CVE-2023-50868 Vendor Advisory
https://bugzilla.suse.com/show_bug.cgi?id=1219826 Issue Tracking
https://datatracker.ietf.org/doc/html/rfc5155 Technical Description
https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html Vendor Advisory
https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1 Release Notes
https://kb.isc.org/docs/cve-2023-50868 Third Party Advisory
https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html Vendor Advisory Mailing List
https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html Vendor Advisory Mailing List
https://lists.debian.org/debian-lts-announce/2024/09/msg00001.html Vendor Advisory Mailing List
https://lists.debian.org/debian-lts-announce/2024/11/msg00035.html Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ Vendor Advisory Mailing List
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ Vendor Advisory Mailing List
https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html Mailing List Release Notes
https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/ Release Notes
https://security.netapp.com/advisory/ntap-20240307-0008/ Vendor Advisory
https://www.isc.org/blogs/2024-bind-security-release/ Exploit Mitigation Press/Media Coverage
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:*
cpe:2.3:a:isc:bind:*:*:*:*:supported_preview:*:*:*
cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:*
cpe:2.3:a:isc:bind:*:s1:*:*:supported_preview:*:*:*
cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

Configuration 4 (hide)

OR cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.2:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.4:*:*:*:*:*:*:*

Configuration 5 (hide)

OR cpe:2.3:a:powerdns:recursor:*:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:*:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:*:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:netapp:bootstrap_os:-:*:*:*:*:*:*:*
cpe:2.3:h:netapp:hci_compute_node:-:*:*:*:*:*:*:*

Configuration 7 (hide)

cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:*

Configuration 8 (hide)

AND
cpe:2.3:a:netapp:hci_baseboard_management_controller:-:*:*:*:*:*:*:*
OR cpe:2.3:h:netapp:h300s:-:*:*:*:*:*:*:*
cpe:2.3:h:netapp:h410c:-:*:*:*:*:*:*:*
cpe:2.3:h:netapp:h410s:-:*:*:*:*:*:*:*
cpe:2.3:h:netapp:h500s:-:*:*:*:*:*:*:*
cpe:2.3:h:netapp:h700s:-:*:*:*:*:*:*:*

History

23 Dec 2025, 20:20

Type Values Removed Values Added
First Time Isc
Debian debian Linux
Netapp h500s
Netapp h410s
Debian
Netapp hci Baseboard Management Controller
Netapp h700s
Netapp active Iq Unified Manager
Fedoraproject
Netapp
Redhat enterprise Linux
Fedoraproject fedora
Netapp h410c
Netapp bootstrap Os
Isc bind
Powerdns
Redhat
Netapp hci Compute Node
Netapp h300s
Powerdns recursor
References () http://www.openwall.com/lists/oss-security/2024/02/16/2 - () http://www.openwall.com/lists/oss-security/2024/02/16/2 - Issue Tracking, Mailing List
References () http://www.openwall.com/lists/oss-security/2024/02/16/3 - () http://www.openwall.com/lists/oss-security/2024/02/16/3 - Issue Tracking, Mailing List
References () https://access.redhat.com/security/cve/CVE-2023-50868 - () https://access.redhat.com/security/cve/CVE-2023-50868 - Vendor Advisory
References () https://bugzilla.suse.com/show_bug.cgi?id=1219826 - () https://bugzilla.suse.com/show_bug.cgi?id=1219826 - Issue Tracking
References () https://datatracker.ietf.org/doc/html/rfc5155 - () https://datatracker.ietf.org/doc/html/rfc5155 - Technical Description
References () https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html - () https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html - Vendor Advisory
References () https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1 - () https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1 - Release Notes
References () https://kb.isc.org/docs/cve-2023-50868 - () https://kb.isc.org/docs/cve-2023-50868 - Third Party Advisory
References () https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html - () https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html - Vendor Advisory, Mailing List
References () https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html - () https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/ - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/ - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/ - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/ - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/ - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/ - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/ - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ - Vendor Advisory, Mailing List
References () https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html - () https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html - Mailing List, Release Notes
References () https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/ - () https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/ - Release Notes
References () https://security.netapp.com/advisory/ntap-20240307-0008/ - () https://security.netapp.com/advisory/ntap-20240307-0008/ - Vendor Advisory
References () https://www.isc.org/blogs/2024-bind-security-release/ - () https://www.isc.org/blogs/2024-bind-security-release/ - Exploit, Mitigation, Press/Media Coverage
References () https://lists.debian.org/debian-lts-announce/2024/09/msg00001.html - () https://lists.debian.org/debian-lts-announce/2024/09/msg00001.html - Vendor Advisory, Mailing List
References () https://lists.debian.org/debian-lts-announce/2024/11/msg00035.html - () https://lists.debian.org/debian-lts-announce/2024/11/msg00035.html - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ - Vendor Advisory, Mailing List
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ - Vendor Advisory, Mailing List
CPE cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*
cpe:2.3:h:netapp:h300s:-:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:*:*:*:*:*:*:*:*
cpe:2.3:h:netapp:hci_compute_node:-:*:*:*:*:*:*:*
cpe:2.3:h:netapp:h500s:-:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.2:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.4:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:h:netapp:h410s:-:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
cpe:2.3:a:netapp:hci_baseboard_management_controller:-:*:*:*:*:*:*:*
cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:*
cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:*
cpe:2.3:o:netapp:bootstrap_os:-:*:*:*:*:*:*:*
cpe:2.3:h:netapp:h410c:-:*:*:*:*:*:*:*
cpe:2.3:h:netapp:h700s:-:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:a:isc:bind:*:*:*:*:supported_preview:*:*:*
cpe:2.3:a:isc:bind:*:s1:*:*:supported_preview:*:*:*

04 Nov 2025, 19:16

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ -
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ -
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ -

04 Nov 2025, 17:15

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2024/09/msg00001.html -

03 Nov 2025, 22:16

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2024/11/msg00035.html -

12 May 2025, 15:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-400

21 Nov 2024, 08:37

Type Values Removed Values Added
References () http://www.openwall.com/lists/oss-security/2024/02/16/2 - () http://www.openwall.com/lists/oss-security/2024/02/16/2 -
References () http://www.openwall.com/lists/oss-security/2024/02/16/3 - () http://www.openwall.com/lists/oss-security/2024/02/16/3 -
References () https://access.redhat.com/security/cve/CVE-2023-50868 - () https://access.redhat.com/security/cve/CVE-2023-50868 -
References () https://bugzilla.suse.com/show_bug.cgi?id=1219826 - () https://bugzilla.suse.com/show_bug.cgi?id=1219826 -
References () https://datatracker.ietf.org/doc/html/rfc5155 - () https://datatracker.ietf.org/doc/html/rfc5155 -
References () https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html - () https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html -
References () https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1 - () https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1 -
References () https://kb.isc.org/docs/cve-2023-50868 - () https://kb.isc.org/docs/cve-2023-50868 -
References () https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html - () https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html -
References () https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html - () https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html -
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/ -
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ -
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ -
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/ -
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/ -
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/ -
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/ -
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/ -
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/ -
References () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ - () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ -
References () https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html - () https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html -
References () https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/ - () https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/ -
References () https://security.netapp.com/advisory/ntap-20240307-0008/ - () https://security.netapp.com/advisory/ntap-20240307-0008/ -
References () https://www.isc.org/blogs/2024-bind-security-release/ - () https://www.isc.org/blogs/2024-bind-security-release/ -

10 Jun 2024, 17:16

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html -

07 Mar 2024, 17:15

Type Values Removed Values Added
References
  • () https://security.netapp.com/advisory/ntap-20240307-0008/ -

04 Mar 2024, 03:15

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/ -

29 Feb 2024, 03:15

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/ -
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/ -

26 Feb 2024, 16:27

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/ -
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/ -

23 Feb 2024, 02:15

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/ -
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/ -

21 Feb 2024, 13:15

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html -

19 Feb 2024, 03:15

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/ -
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/ -

18 Feb 2024, 02:15

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/ -

16 Feb 2024, 21:15

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2024/02/16/3 -

16 Feb 2024, 20:15

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2024/02/16/2 -
Summary
  • (es) El aspecto Closest Encloser Proof del protocolo DNS (en RFC 5155 cuando se omite la guía RFC 9276) permite a atacantes remotos provocar una denegación de servicio (consumo de CPU para cálculos SHA-1) a través de respuestas DNSSEC en un ataque de subdominio aleatorio, también conocido como " Problema NSEC3". La especificación RFC 5155 implica que un algoritmo debe realizar miles de iteraciones de una función hash en determinadas situaciones.

15 Feb 2024, 01:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/security/cve/CVE-2023-50868 -
  • () https://bugzilla.suse.com/show_bug.cgi?id=1219826 -

15 Feb 2024, 00:15

Type Values Removed Values Added
References
  • () https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1 -
  • () https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html -

14 Feb 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-14 16:15

Updated : 2025-12-23 20:20


NVD link : CVE-2023-50868

Mitre link : CVE-2023-50868

CVE.ORG link : CVE-2023-50868


JSON object : View

Products Affected

netapp

  • active_iq_unified_manager
  • h410s
  • h300s
  • bootstrap_os
  • hci_compute_node
  • h500s
  • h410c
  • hci_baseboard_management_controller
  • h700s

debian

  • debian_linux

redhat

  • enterprise_linux

isc

  • bind

powerdns

  • recursor

fedoraproject

  • fedora
CWE
CWE-400

Uncontrolled Resource Consumption