/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2024-25638

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-25638

Severity

8.9

High

CVSS V3

Summary

DNSJava DNSSEC Bypass

Description

dnsjava is an implementation of DNS in Java. Records in DNS replies are not checked for their relevance to the query, allowing an attacker to respond with RRs from different zones. This vulnerability is fixed in 3.6.0.

References

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing