PatchSiren

dhcp-dns-server CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL dhcp-dns-server CVE published 2026-04-07

CVE-2025-71058

CVE-2025-71058 is a critical vulnerability in Dual DHCP DNS Server 8.01 that allows remote attackers to poison the DNS cache by injecting forged UDP DNS responses. The server improperly accepts and caches UDP DNS responses without validating their origin from a legitimate configured upstream DNS server. Responses are matched primarily by TXID and inserted into the cache, enabling attackers to redirect vic [truncated]