Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-47950

24
FAUCET Score

CVE-2025-47950 is a Denial of Service (DoS) vulnerability affecting CoreDNS versions prior to 1.12.2, specifically within its DNS-over-QUIC (DoQ) server implementation. An unauthenticated remote attacker can exploit this by opening an excessive number of QUIC streams, leading to uncontrolled memory consumption and an Out Of Memory (OOM) crash, particularly in resource-constrained environments. The vulnerability has a CVSS score of 7.5 (HIGH), indicating a network-based attack with low complexity and high impact on availability. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
< 1.12.2CPE matchmatch criteria
cpe:2.3:a:coredns.io:coredns:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.5HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
1.19%
Probability of exploitation in next 30 days
EPSS Percentile
64.7%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0119 is in the 43rd percentile among its peer group of 51,551 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (11)

github_advisorypatch availablevia nvd_reference
View patch
gopatch availablevia ghsa
Product: github.com/coredns/corednsFixed in: 1.12.2
microsoftpatch availablevia msrc
Product: azl3 coredns 1.11.4-7 on Azure Linux 3.0Fixed in: 1.11.4-7
microsoftpatch availablevia msrc
Product: 19611-17084Fixed in: 1.11.4-7
microsoftpatch availablevia msrc
Product: 20137-17086Fixed in: 1.11.1-19
microsoftpatch availablevia msrc
Product: cm2 coredns 1.11.1-19 on CBL Mariner 2.0Fixed in: 1.11.1-19
microsoftpatch availablevia msrc
Product: cbl2 coredns 1.11.1-19 on CBL Mariner 2.0Fixed in: 1.11.1-19
microsoftpatch availablevia msrc
Product: 19564-16823Fixed in: 1.11.1-19
redhatpatch availablevia redhat_api
Product: Red Hat Advanced Cluster Management for Kubernetes 2.14Fixed in: rhacm2/lighthouse-agent-rhel9:sha256:14c65ee67fd7195517a3cf39fec0cddb0eaf9e5b65e6397bd503a0ea33754345
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Advanced Cluster Management for Kubernetes 2.14Fixed in: rhacm2/lighthouse-coredns-rhel9:sha256:6b89cc6b664a68b5cdaa81a1485322a9fc60dd209bd9dccd4e700b405c89c702
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Advanced Cluster Management for Kubernetes 2.13Fixed in: rhacm2/lighthouse-coredns-rhel9:sha256:f2794e21f96bd0f710ecf0ea3f7a70a4fd9aab504df15a664b7f7a29c9ff3f5c
View patch

Vendor Advisories (3)

microsoft2025-Jun/CVE-2025-47950Important

CoreDNS Vulnerable to DoQ Memory Exhaustion via Stream Amplification

Jun 10, 2025
goGHSA-cvx7-x8pj-x2gwhigh

CoreDNS Vulnerable to DoQ Memory Exhaustion via Stream Amplification

Jun 6, 2025
redhatCVE-2025-47950Moderate

coredns: CoreDNS Vulnerable to DoQ Memory Exhaustion via Stream Amplification

Jun 6, 2025

References

datatracker.ietf.org / doc/html/rfc9250
Technical Description
github.com / coredns/coredns/commit/efaed02c6a480ec147b1f799aab7cf815b17dfe1
Patch
github.com / coredns/coredns/security/advisories/GHSA-cvx7-x8pj-x2gw
Vendor Advisory
github.com / quic-go/quic-go
Not Applicable
usenix.org / conference/usenixsecurity23/presentation/botella
Broken Link