SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-18916

HIGH · CVSS 7.5 EPSS 0.36%

Source: NVD + CISA KEV + EPSS · Published 2026-08-26 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

A vulnerability exists that allows a remote client to exploit the NSD server by manipulating the TCP receive window, leading to repeated crashes of the server's child processes. This results in a denial of service, effectively disrupting all TCP services provided by the affected NSD instance. Organizations using NSD should prioritize addressing this issue to maintain service availability and prevent potential disruptions.

CVE
CVE-2026-18916
Severity
HIGH
CVSS
7.5
EPSS
0.36%

Original NVD Description

Any remote client can crash a NSD serve child, by throttling the TCP receive window after a TCP query. By continuously crashing the serve childs, the remote client can denial all TCP service to this NSD instance.

Related CVEs

Other vulnerabilities affecting the same vendor(s)