Linuxsecurity
Fedora SpoofDPI Vulnerability Fixes Address Denial of Service Risk
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Fedora has released updates for the SpoofDPI tool to address a moderate configuration issue and a major denial of service vulnerability. The vulnerabilities are linked to CVE-2026-27145, which affects the processing of DNS SAN entries in the golang crypto/x509 package. The updates were published on July 14, 2026, and include version 1.5.3 of SpoofDPI. Users are advised to upgrade to mitigate potential exploitation risks. The vulnerabilities could allow for excessive processing, leading to service disruptions. The updates can be installed via the 'dnf' update program. Fedora 43 and Fedora 44 users are impacted by these vulnerabilities. The issues have been resolved in the latest updates, with specific advisories issued for both versions.
Key Points: • Fedora updates SpoofDPI to fix CVE-2026-27145 affecting DNS SAN processing. • Denial of service vulnerability could lead to significant service disruptions. • Users are urged to upgrade using the 'dnf' update program to mitigate risks.