CVE-2024-25590

Name
CVE-2024-25590
Description
An attacker can publish a zone containing specific Resource Record Sets. Repeatedly processing and caching results for these sets can lead to a denial of service.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-04.html

Match rules

CPE URI Source package Min version Max version
recursor >= 0 < 4.9.9
recursor >= 5.0.0 < 5.0.9
recursor >= 5.1.0 < 5.1.2

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
pdns-recursor 3.20-community 5.0.9-r0 Peter van Dijk <peter.van.dijk@powerdns.com> fixed