CVE-2015-5230
- EPSS 0.29%
- Veröffentlicht 15.01.2020 17:15:13
- Zuletzt bearbeitet 21.11.2024 02:32:36
The DNS packet parsing/generation code in PowerDNS (aka pdns) Authoritative Server 3.4.x before 3.4.6 allows remote attackers to cause a denial of service (crash) via crafted query packets.
CVE-2019-10162
- EPSS 0.01%
- Veröffentlicht 30.07.2019 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:18:33
A vulnerability has been found in PowerDNS Authoritative Server before versions 4.1.10, 4.0.8 allowing an authorized user to cause the server to exit by inserting a crafted record in a MASTER type zone under their control. The issue is due to the fac...
CVE-2019-10163
- EPSS 0.01%
- Veröffentlicht 30.07.2019 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:18:33
A Vulnerability has been found in PowerDNS Authoritative Server before versions 4.1.9, 4.0.8 allowing a remote, authorized master server to cause a high CPU load or even prevent any further updates to any slave zone by sending a large number of NOTIF...
CVE-2018-14626
- EPSS 0.04%
- Veröffentlicht 29.11.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:49:27
PowerDNS Authoritative Server 4.1.0 up to 4.1.4 inclusive and PowerDNS Recursor 4.0.0 up to 4.1.4 inclusive are vulnerable to a packet cache pollution via crafted query that can lead to denial of service.
CVE-2018-10851
- EPSS 0.11%
- Veröffentlicht 29.11.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:42:08
PowerDNS Authoritative Server 3.3.0 up to 4.1.4 excluding 4.1.5 and 4.0.6, and PowerDNS Recursor 3.2 up to 4.1.4 excluding 4.1.5 and 4.0.9, are vulnerable to a memory leak while parsing malformed records that can lead to remote denial of service.
CVE-2016-2120
- EPSS 0.13%
- Veröffentlicht 01.11.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 02:47:52
An issue has been found in PowerDNS Authoritative Server versions up to and including 3.4.10, 4.0.1 allowing an authorized user to crash the server by inserting a specially crafted record in a zone under their control then sending a DNS query for tha...
CVE-2016-7074
- EPSS 0%
- Veröffentlicht 11.09.2018 13:29:01
- Zuletzt bearbeitet 21.11.2024 02:57:24
An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 4.0.4, allowing an attacker in position of man-in-the-middle to alter the content of an AXFR because of insufficient validation of TSIG signatures. A missing ch...
CVE-2016-7073
- EPSS 0.01%
- Veröffentlicht 11.09.2018 13:29:01
- Zuletzt bearbeitet 21.11.2024 02:57:24
An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 4.0.4, allowing an attacker in position of man-in-the-middle to alter the content of an AXFR because of insufficient validation of TSIG signatures. A missing ch...
CVE-2016-7068
- EPSS 0.09%
- Veröffentlicht 11.09.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 02:57:23
An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 3.7.4 and 4.0.4, allowing a remote, unauthenticated attacker to cause an abnormal CPU usage load on the PowerDNS server by sending crafted DNS queries, which mi...
CVE-2016-7072
- EPSS 0.03%
- Veröffentlicht 10.09.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 02:57:24
An issue has been found in PowerDNS Authoritative Server before 3.4.11 and 4.0.2 allowing a remote, unauthenticated attacker to cause a denial of service by opening a large number of TCP connections to the web server. If the web server runs out of fi...