Improper input validation bug in DNS resolver component of Knot Resolver before 2.4.1 allows remote attacker to poison cache.
No PoCs from references.
- https://github.com/0xT11/CVE-POC
- https://github.com/shutingrz/CVE-2018-10920_PoC