The BLOCKED access control list items that are evaluated to deny access on the the proxy protocol port can be bypassed completely when connecting over TCP or TLS and sending the query twice on connection that is kept open.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.nlnetlabs.nl/downloads/nsd/CVE-2026-19538.txt |
|
History
Tue, 01 Sep 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nlnetlabs
Nlnetlabs nsd |
|
| Vendors & Products |
Nlnetlabs
Nlnetlabs nsd |
Wed, 26 Aug 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 26 Aug 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The BLOCKED access control list items that are evaluated to deny access on the the proxy protocol port can be bypassed completely when connecting over TCP or TLS and sending the query twice on connection that is kept open. | |
| Title | Bypass of BLOCKED ACL items on proxy protocol port over TCP or TLS | |
| Weaknesses | CWE-290 CWE-672 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: NLnet Labs
Published:
Updated: 2026-08-26T14:00:12.918Z
Reserved: 2026-08-11T10:27:22.294Z
Link: CVE-2026-19538
Updated: 2026-08-26T14:00:08.820Z
Status : Awaiting Analysis
Published: 2026-08-26T09:16:46.057
Modified: 2026-09-01T21:03:04.987
Link: CVE-2026-19538
No data.
OpenCVE Enrichment
Updated: 2026-09-01T14:24:23Z