What is CVE-2026-66374?
CVE-2026-66374 is a critical vulnerability in Knot Resolver before version 6.4.1, where a heap-based buffer overflow in the DoQ (DNS-over-QUIC) receive path enables remote code execution. Affected systems should be immediately updated to Knot Resolver version 6.4.1 or later to mitigate the risk.
Azərbaycanca: CVE-2026-66374, Knot Resolver-in 6.4.1 versiyasından əvvəlki versiyalarında DoQ (DNS-over-QUIC) qəbul yolunda aşkar edilmiş heap-based buffer overflow zəifliyidir. Bu boşluq uzaqdan kod icrasına (remote code execution) imkan verərək təsirlənən sistemləri risk altına qoyur. Problemi aradan qaldırmaq üçün Knot Resolver-in 6.4.1 və ya daha yeni versiyasına təcili yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-119
FAQ2
What is the mechanism of the CVE-2026-66374 vulnerability?
CVE-2026-66374 is a heap-based buffer overflow vulnerability in the DoQ receive path of Knot Resolver.
In which Knot Resolver version is CVE-2026-66374 resolved?
CVE-2026-66374 is resolved in Knot Resolver version 6.4.1.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.