The BLOCKED access control list items that are evaluated to deny access on the the proxy protocol port can be bypassed completely when connecting over TCP or TLS and sending the query twice on connection that is kept open.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
This issue is fixed in 4.15.1 and all later versions.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.nlnetlabs.nl/downloads/nsd/CVE-2026-19538.txt |
|
History
Wed, 26 Aug 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The BLOCKED access control list items that are evaluated to deny access on the the proxy protocol port can be bypassed completely when connecting over TCP or TLS and sending the query twice on connection that is kept open. | |
| Title | Bypass of BLOCKED ACL items on proxy protocol port over TCP or TLS | |
| Weaknesses | CWE-290 CWE-672 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: NLnet Labs
Published:
Updated: 2026-08-26T08:47:08.992Z
Reserved: 2026-08-11T10:27:22.294Z
Link: CVE-2026-19538
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-26T10:30:04Z