Show filters
68 Total Results
Displaying 51-60 of 68
Sort by:
Attacker Value
Unknown
CVE-2015-1868
Disclosure Date: May 18, 2015 (last updated October 05, 2023)
The label decompression functionality in PowerDNS Recursor 3.5.x, 3.6.x before 3.6.3, and 3.7.x before 3.7.2 and Authoritative (Auth) Server 3.2.x, 3.3.x before 3.3.2, and 3.4.x before 3.4.4 allows remote attackers to cause a denial of service (CPU consumption or crash) via a request with a name that refers to itself.
0
Attacker Value
Unknown
CVE-2014-8601
Disclosure Date: December 10, 2014 (last updated October 05, 2023)
PowerDNS Recursor before 3.6.2 does not limit delegation chaining, which allows remote attackers to cause a denial of service ("performance degradations") via a large or infinite number of referrals, as demonstrated by resolving domains hosted by ezdns.it.
0
Attacker Value
Unknown
CVE-2014-3614
Disclosure Date: September 19, 2014 (last updated October 05, 2023)
Unspecified vulnerability in PowerDNS Recursor (aka pdns_recursor) 3.6.x before 3.6.1 allows remote attackers to cause a denial of service (crash) via an unknown sequence of malformed packets.
0
Attacker Value
Unknown
CVE-2012-1193
Disclosure Date: February 17, 2012 (last updated October 04, 2023)
The resolver in PowerDNS Recursor (aka pdns_recursor) 3.3 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.
0
Attacker Value
Unknown
CVE-2012-0206
Disclosure Date: February 17, 2012 (last updated October 04, 2023)
common_startup.cc in PowerDNS (aka pdns) Authoritative Server before 2.9.22.5 and 3.x before 3.0.1 allows remote attackers to cause a denial of service (packet loop) via a crafted UDP DNS response.
0
Attacker Value
Unknown
CVE-2009-4009
Disclosure Date: January 08, 2010 (last updated October 04, 2023)
Buffer overflow in PowerDNS Recursor before 3.1.7.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via crafted packets.
0
Attacker Value
Unknown
CVE-2009-4010
Disclosure Date: January 08, 2010 (last updated October 04, 2023)
Unspecified vulnerability in PowerDNS Recursor before 3.1.7.2 allows remote attackers to spoof DNS data via crafted zones.
0
Attacker Value
Unknown
CVE-2008-5277
Disclosure Date: December 09, 2008 (last updated October 04, 2023)
PowerDNS before 2.9.21.2 allows remote attackers to cause a denial of service (daemon crash) via a CH HINFO query.
0
Attacker Value
Unknown
CVE-2008-3337
Disclosure Date: August 08, 2008 (last updated October 04, 2023)
PowerDNS Authoritative Server before 2.9.21.1 drops malformed queries, which might make it easier for remote attackers to poison DNS caches of other products running on other servers, a different issue than CVE-2008-1447 and CVE-2008-3217.
0
Attacker Value
Unknown
CVE-2008-3217
Disclosure Date: July 18, 2008 (last updated October 04, 2023)
PowerDNS Recursor before 3.1.6 does not always use the strongest random number generator for source port selection, which makes it easier for remote attack vectors to conduct DNS cache poisoning. NOTE: this is related to incomplete integration of security improvements associated with addressing CVE-2008-1637.
0