Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CVE-2026-32936
  • github.com/coredns/coredns
CoreDNS DoH GET path missing size validation causes CPU and memory amplification 05 May
  • Fix available
  • Severity - 8.7 (High)
ECHO-3575-11f2-ad06
  • Echo:Go/github.com/coredns/coredns
See record for full details 28 Sep
  • Fix available
OESA-2026-4018
  • openEuler:20.03-LTS-SP4/coredns
  • openEuler:22.03-LTS-SP4/coredns
  • openEuler:24.03-LTS-SP1/coredns
  • openEuler:24.03-LTS-SP3/coredns
  • openEuler:24.03-LTS-SP4/coredns
coredns security update 25 Sep
  • Fix available
  • Severity - 7.5 (High)
CLEANSTART-2026-SO59114
  • CleanStart/coredns
  • CleanStart/kubernetes-dns-node-cache
  • CleanStart/kubernetes-dns-node-cache-fips
Security fix for CVE-2026-32936 applied in: coredns 1.14.2-r1, kubernetes-dns-node-cache 1.23.1-r0, kubernetes-dns-node-cache 1.24.1-r1, kubernetes-dns-node-cache 1.25.0-r8, kubernetes-dns-node-cache 1.26.0-r1, kubernetes-dns-node-cache-fips 1.26.0-r1 18 Sep
  • Fix available
MINI-85qx-q35h-h42h
  • MinimOS/kubernetes-dns-node-cache
See record for full details 29 Jul
  • Fix available
MINI-9x78-9c5c-hq88
  • MinimOS/kubernetes-dns-node-cache-fips
See record for full details 24 Jul
  • Fix available
GO-2026-5164
  • Go/github.com/coredns/coredns
CoreDNS DoH GET oversized dns= query parameter causes pre-validation CPU and memory amplification in github.com/coredns/coredns 25 Jun
  • Fix available
CGA-75f2-5rhf-765j
  • Chainguard/eks-distro-coredns-fips-1.36
See record for full details 20 May
  • Fix available
  • Severity - 8.7 (High)
CGA-7552-2gxg-fp9w
  • Chainguard/eks-distro-coredns-1.36
See record for full details 20 May
  • Fix available
  • Severity - 8.7 (High)
CGA-5rgc-q3rm-68jx
  • Chainguard/eks-distro-coredns-1.36
See record for full details 20 May
  • Fix available
  • Severity - 8.7 (High)
CGA-8xwc-q832-cv8h
  • Chainguard/eks-distro-coredns-fips-1.36
See record for full details 19 May
  • Fix available
  • Severity - 8.7 (High)
openSUSE-SU-2026:20703-1
  • Not specified
Security update for coredns 06 May
  • No fix available
AZL-85724
  • Azure Linux:3/coredns
CVE-2026-32936 affecting package coredns for versions less than 1.11.4-17 05 May
  • Fix available
MINI-fw5v-v933-96mg
  • MinimOS/eks-distro-1.34-coredns-1.12.4
  • MinimOS/eks-distro-1.34-coredns-1.13.2
  • MinimOS/eks-distro-1.34-coredns-1.14.2
See record for full details 30 Apr
  • No fix available
CGA-j8fg-xq3f-w4hc
  • Chainguard/eks-distro-coredns-fips-1.33
See record for full details 30 Apr
  • Fix available
  • Severity - 8.7 (High)
CGA-qr35-37r2-hgq8
  • Chainguard/eks-distro-coredns-1.31
See record for full details 30 Apr
  • Fix available
  • Severity - 8.7 (High)