Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeImproper random number generation in github.com/coredns/coredns
CoreDNS before 1.6.6 (using go DNS package < 1.1.25) improperly generates random numbers because math/rand is used. The TXID becomes predictable, leading to response forgeries.
The problem has been fixed in 1.6.6+.
Please consult our security guide for more information regarding our security process.