Dnrd is a narrowly scoped DNS resolver utility with a focused vulnerability footprint centered on the dnrd product itself. The observed weakness classes reflect general implementation issues rather than a specialized pattern, and current severity, exploitation, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Dnrd over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2002-0140HIGH Domain Name Relay Daemon (dnrd) 2.10 and earlier allows remote malicious DNS sites to cause a denial of service and possibly execute arbitrary code via a long or malformed DNS repl | Mar 25, 2002 | 7.5 | 35 | NO | YES |
CVE-2005-2315HIGH Buffer overflow in Domain Name Relay Daemon (DNRD) before 2.19.1 allows remote attackers to execute arbitrary code via a large number of large DNS packets with the Z and QR flags c | Dec 31, 2005 | 7.5 | 20 | NO | NO |
CVE-2004-0789MEDIUM Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Network products before firmware 3.13, and (3) Men & Mice Suite | Dec 31, 2004 | 5.0 | 20 | NO | NO |
CVE-2005-0037MEDIUM The DNS implementation of DNRD before 2.10 allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which | Dec 31, 2005 | 5.0 | 15 | NO | NO |
CVE-2005-2316MEDIUM Domain Name Relay Daemon (DNRD) before 2.19.1 allows remote attackers to cause a denial of service (infinite recursion) via a DNS packet that uses message compression in the QNAME | Dec 31, 2005 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Dnrd.
Media articles that mention a CVE ID that affects a product developed by Dnrd — matched by CVE ID, not by vendor name.