Powerdns

Pdns

13 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.01%
  • Veröffentlicht 09.02.2026 14:44:28
  • Zuletzt bearbeitet 09.02.2026 16:08:35

Crafted delegations or IP fragments can poison cached delegations in Recursor.

  • EPSS 0.01%
  • Veröffentlicht 09.02.2026 14:44:19
  • Zuletzt bearbeitet 09.02.2026 16:08:35

Crafted delegations or IP fragments can poison cached delegations in Recursor.

  • EPSS 0.01%
  • Veröffentlicht 09.02.2026 14:25:24
  • Zuletzt bearbeitet 09.02.2026 16:08:35

Crafted zones can lead to increased incoming network traffic.

  • EPSS 0.01%
  • Veröffentlicht 09.02.2026 14:20:46
  • Zuletzt bearbeitet 09.02.2026 16:16:00

Crafted zones can lead to increased resource usage and crafted CNAME chains can lead to cache poisoning in Recursor.

  • EPSS 0.01%
  • Veröffentlicht 09.12.2025 09:16:03
  • Zuletzt bearbeitet 19.02.2026 17:13:48

An attacker can trigger an assertion failure by requesting crafted DNS records, waiting for them to be inserted into the records cache, then send a query with qtype set to ANY.

  • EPSS 0.09%
  • Veröffentlicht 09.12.2025 09:15:43
  • Zuletzt bearbeitet 19.02.2026 17:04:30

An attacker can trigger the removal of cached records by sending a NOTIFY query over TCP.

  • EPSS 0.01%
  • Veröffentlicht 18.09.2025 09:21:32
  • Zuletzt bearbeitet 04.11.2025 22:16:09

In some circumstances, when DNSdist is configured to use the nghttp2 library to process incoming DNS over HTTPS queries, an attacker might be able to cause a denial of service by crafting a DoH exchange that triggers an unbounded I/O read loop, causi...

  • EPSS 0.03%
  • Veröffentlicht 21.07.2025 12:49:31
  • Zuletzt bearbeitet 22.07.2025 13:06:07

An attacker spoofing answers to ECS enabled requests sent out by the Recursor has a chance of success higher than non-ECS enabled queries. The updated version include various mitigations against spoofing attempts of ECS enabled queries by chaining E...

  • EPSS 0.15%
  • Veröffentlicht 20.05.2025 11:17:17
  • Zuletzt bearbeitet 21.05.2025 20:25:16

In some circumstances, when DNSdist is configured to allow an unlimited number of queries on a single, incoming TCP connection from a client, an attacker can cause a denial of service by crafting a TCP exchange that triggers an exhaustion of the stac...

  • EPSS 0.26%
  • Veröffentlicht 29.04.2025 11:25:47
  • Zuletzt bearbeitet 20.06.2025 16:15:28

When DNSdist is configured to provide DoH via the nghttp2 provider, an attacker can cause a denial of service by crafting a DoH exchange that triggers an illegal memory access (double-free) and crash of DNSdist, causing a denial of service. The reme...