PatchSiren

nic CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH nic CVE published 2026-07-25

CVE-2026-66374

CVE-2026-66374 is a high-severity vulnerability in Knot Resolver before 6.4.1, allowing remote code execution via a heap-based buffer overflow in the DoQ (DNS-over-QUIC) receive path. This vulnerability has a CVSS score of 8.1, indicating a high level of severity. The vulnerability exists due to a lack of proper input validation in the DoQ receive path, which allows an attacker to execute remote code. Use [truncated]