PT-2026-31029 · Unknown+1 · Aardvark-Dns+1

·

CVE-2026-35406

·

Published

2026-04-07

·

Updated

2026-07-08

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Aardvark-dns versions 1.16.0 through 1.17.0
Description A truncated TCP DNS query followed by a connection reset causes Aardvark-dns to enter an unrecoverable infinite error loop, resulting in 100% CPU usage.
Recommendations Update to version 1.17.1 or later.

Exploit

Fix

Resource Exhaustion

Infinite Loop

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:36318
ALSA-2026:36782
CVE-2026-35406
GHSA-HFPQ-X728-986J
OPENSUSE-SU-2026:10570-1
RHSA-2026:36318
RHSA-2026:36782

Affected Products

Aardvark-Dns
Rocky Linux