Search CVE reports


Toggle filters

41 – 50 of 67 results


CVE-2017-15090

Medium priority
Vulnerable

An issue has been found in the DNSSEC validation component of PowerDNS Recursor from 4.0.0 and up to and including 4.0.6, where the signatures might have been accepted as valid even if the signed data was not in bailiwick of the...

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
pdns-recursor Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2018-1000003

Unknown priority
Ignored

Improper input validation bugs in DNSSEC validators components in PowerDNS version 4.1.0 allow attacker in man-in-the-middle position to deny existence of some data in DNS via packet replay.

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
pdns-recursor Not affected Not affected
Show less packages

CVE-2016-6172

Medium priority
Vulnerable

PowerDNS (aka pdns) Authoritative Server before 4.0.1 allows remote primary DNS servers to cause a denial of service (memory exhaustion and secondary DNS server crash) via a large (1) AXFR or (2) IXFR response.

1 affected package

pdns

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
pdns Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2016-5427

Low priority
Ignored

PowerDNS (aka pdns) Authoritative Server before 3.4.10 does not properly handle a . (dot) inside labels, which allows remote attackers to cause a denial of service (backend CPU consumption) via a crafted DNS query.

1 affected package

pdns

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
pdns Not affected Not affected
Show less packages

CVE-2016-5426

Low priority
Ignored

PowerDNS (aka pdns) Authoritative Server before 3.4.10 allows remote attackers to cause a denial of service (backend CPU consumption) via a long qname.

1 affected package

pdns

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
pdns Not affected Not affected
Show less packages

CVE-2015-5311

Low priority
Ignored

PowerDNS (aka pdns) Authoritative Server 3.4.4 before 3.4.7 allows remote attackers to cause a denial of service (assertion failure and server crash) via crafted query packets.

2 affected packages

pdns, pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
pdns Not affected Not affected
pdns-recursor Not affected Not affected
Show less packages

CVE-2015-5470

Low priority

Some fixes available 2 of 5

The label decompression functionality in PowerDNS Recursor before 3.6.4 and 3.7.x before 3.7.3 and Authoritative (Auth) Server before 3.3.3 and 3.4.x before 3.4.5 allows remote attackers to cause a denial of service...

2 affected packages

pdns, pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
pdns Not affected Not affected
pdns-recursor Not affected Not affected
Show less packages

CVE-2015-1868

Medium priority

Some fixes available 3 of 8

The label decompression functionality in PowerDNS Recursor 3.5.x, 3.6.x before 3.6.3, and 3.7.x before 3.7.2 and Authoritative (Auth) Server 3.2.x, 3.3.x before 3.3.2, and 3.4.x before 3.4.4 allows remote attackers to cause a...

2 affected packages

pdns, pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
pdns Not affected
pdns-recursor Not affected
Show less packages

CVE-2014-7210

Low priority
Ignored

pdns in Debian creates too privileged MySQL user

1 affected package

pdns

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
pdns Not affected Not affected
Show less packages

CVE-2014-8601

Medium priority

Some fixes available 1 of 4

PowerDNS Recursor before 3.6.2 does not limit delegation chaining, which allows remote attackers to cause a denial of service ("performance degradations") via a large or infinite number of referrals, as demonstrated by resolving...

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
pdns-recursor Not affected
Show less packages