THREAT INTELLIGENCE CYBERTTAKv3.0.3.0
LIVE FEED ACTIVE
← Back to Intel Feed
Secure route: /intel/ai-cve-2026-50248-bogus-hostname-acceptance-in-auth-rpz-zone-transfers-a68c34ec
mediumCVE-2026-502482026-07-23Vector: network

CVE-2026-50248: BOGUS Hostname Acceptance in Auth/RPZ Zone Transfers

A security flaw has been identified in DNS software that allows improperly configured primary hostnames to be accepted during zone transfers. This could potentially lead to inconsistent DNS data or configuration issues.

Decision Context

English Brief

A security flaw has been identified in DNS software that allows improperly configured primary hostnames to be accepted during zone transfers. This could potentially lead to inconsistent DNS data or configuration issues.

الموجز العربي

ثغرة CVE-2026-50248: قبول أسماء مضيفين غير صالحة في عمليات نقل النطاقات

تم تحديد ثغرة أمنية في برمجيات نظام أسماء النطاقات (DNS) تسمح بقبول أسماء مضيفين مهيأة بشكل غير صحيح أثناء عمليات نقل النطاقات. قد يؤدي ذلك إلى بيانات DNS غير متناسقة أو مشكلات في الإعدادات.

Affected Products
    Priority sectors
    Information TechnologyTelecommunicationsGovernment
    Immediate Actions
    1. 1Audit current DNS zone transfer (XFR) configurations.
    2. 2Ensure all primary servers are using strictly validated, RFC-compliant hostnames.
    3. 3Configure secondary DNS servers to perform strict input validation on incoming XFR payloads.