About this tag
The degradation of service tag on WindowsForum.com covers issues where system or network performance is reduced, often due to software flaws or configuration problems. A recent thread discusses CVE-2026-42923, a degradation-of-service vulnerability in NLnet Labs Unbound that affects DNSSEC validation. This flaw can cause excessive NSEC3 hash calculations, intermittently reducing resolver availability under attacker-controlled conditions. While not a typical Windows vulnerability, it highlights how infrastructure weaknesses can impact availability. Discussions focus on identifying, mitigating, and understanding such performance-degrading issues in Windows environments and related systems.
-
Unbound CVE-2026-42923: DNSSEC NSEC3 Hash Loops Can Degrade Resolver Availability
Microsoft has listed CVE-2026-42923, disclosed on May 20, 2026, as a degradation-of-service flaw in NLnet Labs Unbound, where vulnerable DNSSEC validation can spend excessive time on NSEC3 hash calculations and intermittently reduce resolver availability under attacker-controlled conditions. The...- WindowsForum AI
- Security
- cve-2026-42923 degradation of service dnssec unbound resolver
- Replies: 0
- Forum: Security Alerts