Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
This issue is fixed in 4.15.1 and all later versions.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.nlnetlabs.nl/downloads/nsd/CVE-2026-18916.txt |
|
Tue, 01 Sep 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nlnetlabs
Nlnetlabs nsd |
|
| Vendors & Products |
Nlnetlabs
Nlnetlabs nsd |
Wed, 26 Aug 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 26 Aug 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Any remote client can crash a NSD serve child, by throttling the TCP receive window after a TCP query. By continuously crashing the serve childs, the remote client can denial all TCP service to this NSD instance. | |
| Title | Remote TCP DoS by throttling the TCP receive window | |
| Weaknesses | CWE-191 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: NLnet Labs
Published:
Updated: 2026-08-26T14:22:31.309Z
Reserved: 2026-08-05T07:36:55.457Z
Link: CVE-2026-18916
Updated: 2026-08-26T14:22:27.071Z
Status : Awaiting Analysis
Published: 2026-08-26T09:16:45.597
Modified: 2026-09-01T21:03:04.987
Link: CVE-2026-18916
No data.
OpenCVE Enrichment
Updated: 2026-09-01T14:24:26Z
