THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-xvg2-cgv6-6h7v (high) — netfoil: Incorrect block responses could lead to localhost traffic

[GHSA] GHSA-xvg2-cgv6-6h7v (high) — netfoil: Incorrect block responses could lead to localhost traffic

medgithub_advisoriesPublished 2026-07-29

GHSA-xvg2-cgv6-6h7v Severity: high CVE: None

netfoil: Incorrect block responses could lead to localhost traffic

### Summary `0.0.0.0` was used instead of NXDOMAIN for block responses. On Linux, which is the target platform for netfoil, the `0.0.0.0` is sent to localhost rather than just dropped.

### Impact Unintended traffic could be sent to localhost. Impact depends on running services and fir

Original source: https://github.com/advisories/GHSA-xvg2-cgv6-6h7v