Описание
PowerDNS Authoritative Server 3.3.0 up to 4.1.4 excluding 4.1.5 and 4.0.6, and PowerDNS Recursor 3.2 up to 4.1.4 excluding 4.1.5 and 4.0.9, are vulnerable to a memory leak while parsing malformed records that can lead to remote denial of service.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| pdns | fixed | 4.1.5-1 | package | |
| pdns | fixed | 4.0.3-1+deb9u3 | stretch | package |
| pdns | ignored | jessie | package | |
| pdns-recursor | fixed | 4.1.7-1 | package | |
| pdns-recursor | fixed | 4.0.4-1+deb9u4 | stretch | package |
| pdns-recursor | ignored | jessie | package |
Примечания
https://doc.powerdns.com/authoritative/security-advisories/powerdns-advisory-2018-03.html
Patches: https://downloads.powerdns.com/patches/2018-03/
https://doc.powerdns.com/recursor/security-advisories/powerdns-advisory-2018-04.html
Patches: https://downloads.powerdns.com/patches/2018-04/
EPSS
Связанные уязвимости
PowerDNS Authoritative Server 3.3.0 up to 4.1.4 excluding 4.1.5 and 4.0.6, and PowerDNS Recursor 3.2 up to 4.1.4 excluding 4.1.5 and 4.0.9, are vulnerable to a memory leak while parsing malformed records that can lead to remote denial of service.
PowerDNS Authoritative Server 3.3.0 up to 4.1.4 excluding 4.1.5 and 4.0.6, and PowerDNS Recursor 3.2 up to 4.1.4 excluding 4.1.5 and 4.0.9, are vulnerable to a memory leak while parsing malformed records that can lead to remote denial of service.
PowerDNS Authoritative Server 3.3.0 up to 4.1.4 excluding 4.1.5 and 4.0.6, and PowerDNS Recursor 3.2 up to 4.1.4 excluding 4.1.5 and 4.0.9, are vulnerable to a memory leak while parsing malformed records that can lead to remote denial of service.
EPSS