Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7559 | DNSSEC validation is not performed correctly. An attacker can cause this package to report successful validation for invalid, attacker-controlled records. The owner name of RRSIG RRs is not validated, permitting an attacker to present the RRSIG for an attacker-controlled domain in a response for any other domain. |
Github GHSA |
GHSA-87mm-qxm5-cp3f | go-resolver vulnerable to attacker-controlled domains due to unvalidated RRSIG RRs |
Mon, 14 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Go
Published:
Updated: 2025-04-14T17:06:12.574Z
Reserved: 2022-09-27T23:06:28.124Z
Link: CVE-2022-3346
Updated: 2024-08-03T01:07:06.519Z
Status : Modified
Published: 2022-12-28T03:15:10.140
Modified: 2025-04-14T17:15:25.600
Link: CVE-2022-3346
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA