<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Dns — PoC Archive</title><link>https://poc.intelseclab.com/tags/dns/</link><description>Latest proof-of-concept entries.</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sun, 05 Jul 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://poc.intelseclab.com/tags/dns/index.xml" rel="self" type="application/rss+xml"/><item><title>rldns 1.3 Heap-Based Out-of-Bounds Read Remote DoS (CVE-2026-27831)</title><link>https://poc.intelseclab.com/pocs/binary/2026-07-05_cve-2026-27831-rldns-heap-oob-read-dos/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/binary/2026-07-05_cve-2026-27831-rldns-heap-oob-read-dos/</guid><description>Medium severity — binary · CVE-2026-27831. Status: PoC. Affects: rldns 1.3 (open-source DNS server). Tags: dns, heap-overflow, out-of-bounds-read, denial-of-service, rldns, memory-corruption, x86_64.</description><category>binary</category><category>Medium</category><category>dns</category><category>heap-overflow</category><category>out-of-bounds-read</category><category>denial-of-service</category><category>rldns</category><category>memory-corruption</category><category>x86_64</category></item><item><title>PJSIP DNS Compression Pointer Heap Out-of-Bounds Read (CVE-2026-32945)</title><link>https://poc.intelseclab.com/pocs/network/2026-07-05_cve-2026-32945-pjsip-dns-oob-read/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/network/2026-07-05_cve-2026-32945-pjsip-dns-oob-read/</guid><description>Medium severity — network · CVE-2026-32945. Status: PoC. Affects: pjproject (PJSIP library) — used by Asterisk, FreeSWITCH, and other SIP applications. Tags: pjsip, pjproject, dns, heap-oob-read, denial-of-service, asterisk, freeswitch, sip.</description><category>network</category><category>Medium</category><category>pjsip</category><category>pjproject</category><category>dns</category><category>heap-oob-read</category><category>denial-of-service</category><category>asterisk</category><category>freeswitch</category><category>sip</category></item><item><title>dnsmasq extract_addresses() RDLEN/RDATA Buffer Overflow — CVE-2026-5172</title><link>https://poc.intelseclab.com/pocs/network/2026-07-05_cve-2026-5172-dnsmasq-srv-rdlen-overflow/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/network/2026-07-05_cve-2026-5172-dnsmasq-srv-rdlen-overflow/</guid><description>Info severity — network · CVE-2026-5172. Status: PoC. Affects: dnsmasq (DNS forwarder/resolver). Tags: dnsmasq, dns, buffer-overflow, srv-record, rdlen, upstream-resolver, memory-corruption.</description><category>network</category><category>Info</category><category>dnsmasq</category><category>dns</category><category>buffer-overflow</category><category>srv-record</category><category>rdlen</category><category>upstream-resolver</category><category>memory-corruption</category></item><item><title>dnsmasq EDNS Client Subnet (ECS) Response Validation Bypass (CVE-2026-4893)</title><link>https://poc.intelseclab.com/pocs/network/2026-07-05_cve-2026-4893-dnsmasq-ecs-spoofing/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/network/2026-07-05_cve-2026-4893-dnsmasq-ecs-spoofing/</guid><description>Medium severity — network · CVE-2026-4893. Status: PoC. Affects: dnsmasq (DNS forwarder/cache). Tags: dnsmasq, dns, edns, ecs, rfc7871, cache-poisoning, spoofing, udp.</description><category>network</category><category>Medium</category><category>dnsmasq</category><category>dns</category><category>edns</category><category>ecs</category><category>rfc7871</category><category>cache-poisoning</category><category>spoofing</category><category>udp</category></item><item><title>c-ares TCP ares_getaddrinfo() Use-After-Free Code Execution</title><link>https://poc.intelseclab.com/pocs/network/2026-07-03_c-ares-tcp-getaddrinfo-uaf/</link><pubDate>Fri, 03 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/network/2026-07-03_c-ares-tcp-getaddrinfo-uaf/</guid><description>High severity — network · None assigned as of 2026-07-03. Status: PoC. Affects: c-ares (async DNS resolver library). Tags: c-ares, use-after-free, dns, resolver, tcp, heap-corruption, code-execution, edns.</description><category>network</category><category>High</category><category>c-ares</category><category>use-after-free</category><category>dns</category><category>resolver</category><category>tcp</category><category>heap-corruption</category><category>code-execution</category><category>edns</category></item></channel></rss>