THREAT OPS › Threat News › [GHSA] GHSA-mrg3-qvqr-jw29 (high) — CoreDNS: Unauthenticated memory exhaustion in custom transports
[GHSA] GHSA-mrg3-qvqr-jw29 (high) — CoreDNS: Unauthenticated memory exhaustion in custom transports
GHSA-mrg3-qvqr-jw29 Severity: high CVE: CVE-2026-82399
CoreDNS: Unauthenticated memory exhaustion in custom transports
### Summary
CoreDNS parses attacker-controlled DNS section counts before validating them on DNS-over-HTTPS (DoH and DoH3), DNS-over-QUIC (DoQ), and DNS-over-gRPC listeners. An unauthenticated client can use DNS name compression to make one 65,533-byte request allocate more than
MITRE ATT&CK techniques
- CompressionT1027.015
Indicators of compromise
- 18a58b9e898ccd95c3f8ee72a37b95b3d1e3e928sha1
- CVE-2026-82399cve
- https://.:8053url
Original source: https://github.com/advisories/GHSA-mrg3-qvqr-jw29