The DNSSEC validation library (libval) library in dnssec-tools prior to 1.3.1 does not properly check that the signing key is the APEX trust anchor, which might allow malicious users to conduct unspecified attacks.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
dnssec-tools dnssec-tools |