Knot Resolver through 5.5.1 may allow DNS cache poisoning when there is an attempt to limit forwarding actions by filters. https://knot-resolver.readthedocs.io/en/stable/modules-policy.html#forwarding https://github.com/CZ-NIC/knot-resolver/commit/ccb9d9794db5eb757c33becf65cb1cf48ecfd968
Created knot-resolver tracking bugs for this issue: Affects: epel-all [bug 2099405] Affects: fedora-all [bug 2099406]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.