CVE-2017-15091
- EPSS 0%
- Veröffentlicht 23.01.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:14:03
An issue has been found in the API component of PowerDNS Authoritative 4.x up to and including 4.0.4 and 3.x up to and including 3.4.11, where some operations that have an impact on the state of the server are still allowed even though the API has be...
CVE-2016-5427
- EPSS 85.55%
- Veröffentlicht 21.09.2016 14:25:15
- Zuletzt bearbeitet 06.05.2026 22:30:45
PowerDNS (aka pdns) Authoritative Server before 3.4.10 does not properly handle a . (dot) inside labels, which allows remote attackers to cause a denial of service (backend CPU consumption) via a crafted DNS query.
CVE-2016-5426
- EPSS 36.97%
- Veröffentlicht 21.09.2016 14:25:14
- Zuletzt bearbeitet 06.05.2026 22:30:45
PowerDNS (aka pdns) Authoritative Server before 3.4.10 allows remote attackers to cause a denial of service (backend CPU consumption) via a long qname.
- EPSS 0.48%
- Veröffentlicht 17.11.2015 15:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
PowerDNS (aka pdns) Authoritative Server 3.4.4 before 3.4.7 allows remote attackers to cause a denial of service (assertion failure and server crash) via crafted query packets.
CVE-2015-5470
- EPSS 0.01%
- Veröffentlicht 02.11.2015 19:59:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
The label decompression functionality in PowerDNS Recursor before 3.6.4 and 3.7.x before 3.7.3 and Authoritative (Auth) Server before 3.3.3 and 3.4.x before 3.4.5 allows remote attackers to cause a denial of service (CPU consumption or crash) via a r...
CVE-2015-1868
- EPSS 0.51%
- Veröffentlicht 18.05.2015 15:59:05
- Zuletzt bearbeitet 06.05.2026 22:30:45
The label decompression functionality in PowerDNS Recursor 3.5.x, 3.6.x before 3.6.3, and 3.7.x before 3.7.2 and Authoritative (Auth) Server 3.2.x, 3.3.x before 3.3.2, and 3.4.x before 3.4.4 allows remote attackers to cause a denial of service (CPU c...