Nlnetlabs Security Vulnerabilities (CVEs)
Track 14 security vulnerabilities affecting Nlnetlabs products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.
This vulnerability in NLnet Labs Unbound DNS resolver allows remote attackers to cause denial of service via an infinite loop when EDE (Extended DNS E...
Mar 7, 2024Routinator versions 0.14.0 through 0.14.2 contain a vulnerability where the software will crash when an RTR (RPKI-to-Router) connection is reset by th...
Feb 26, 2024CVE-2023-50387 (KeyTrap) is a DNSSEC protocol vulnerability that allows remote attackers to cause denial of service by exhausting CPU resources throug...
Feb 14, 2024The bcder library from NLnet Labs up to version 0.7.2 contains a vulnerability where decoding certain invalid input data causes a panic instead of pro...
Sep 13, 2023This vulnerability in Routinator allows attackers to write files outside the intended directory when the optional keep-rrdp-responses feature is enabl...
Sep 13, 2023CVE-2020-19861 is a heap-based buffer overflow vulnerability in ldns 1.7.1's zone file parsing function. When processing malicious DNS zone files, the...
Jan 21, 2022CVE-2021-43173 is a denial-of-service vulnerability in NLnet Labs Routinator where malicious RRDP repositories can stall validation by slowly feeding ...
Nov 9, 2021Routinator versions before 0.10.0 produce invalid RTR payloads when processing ROAs with excessively large max-length values from RPKI CAs. This cause...
Sep 21, 2021CVE-2019-25032 is an integer overflow vulnerability in Unbound DNS resolver's regional allocator that could allow memory corruption. The vendor disput...
Apr 27, 2021CVE-2019-25034 is an integer overflow vulnerability in Unbound DNS resolver's sldns_str2wire_dname_buf_origin function that can lead to out-of-bounds ...
Apr 27, 2021CVE-2019-25036 is an assertion failure vulnerability in Unbound DNS resolver's synth_cname function that can cause denial of service. The vendor dispu...
Apr 27, 2021CVE-2019-25038 is an integer overflow vulnerability in Unbound DNS resolver's dnscrypt component that could allow memory corruption. The vulnerability...
Apr 27, 2021Unbound DNS resolver versions before 1.9.5 contain a vulnerability where specially crafted DNS responses with compressed domain names can trigger an i...
Apr 27, 2021CVE-2019-25042 is an out-of-bounds write vulnerability in Unbound DNS resolver versions before 1.9.5, triggered by specially crafted compressed DNS na...
Apr 27, 2021Why Monitor Nlnetlabs Security Vulnerabilities?
Real-time CVE tracking: Our automated system monitors 14+ known vulnerabilities affecting Nlnetlabs products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.
Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Nlnetlabs packages in under 60 seconds. No agents required - completely agentless scanning that works across Nlnetlabs deployments.
Free vulnerability database: Access detailed information about every Nlnetlabs CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.
🚀 Get Started in 60 Seconds
- Register free account & add your servers
- Run one-time scan or schedule automatic monitoring (every 1-24 hours)
- Receive instant alerts when new Nlnetlabs CVEs affect your systems
- Access dashboard with severity breakdown & fix instructions