Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-37428

Опубликовано: 23 авг. 2022
Источник: debian
EPSS Низкий

Описание

PowerDNS Recursor up to and including 4.5.9, 4.6.2 and 4.7.1, when protobuf logging is enabled, has Improper Cleanup upon a Thrown Exception, leading to a denial of service (daemon crash) via a DNS query that leads to an answer with specific properties.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pdns-recursorfixed4.7.2-1package
pdns-recursorend-of-lifebullseyepackage
pdns-recursorno-dsabusterpackage

Примечания

  • https://www.openwall.com/lists/oss-security/2022/08/23/1

  • Patches: https://downloads.powerdns.com/patches/2022-02/

  • https://github.com/PowerDNS/pdns/commit/21f3d92144bc6a65483a363f6be7237d714c1936 (rec-4.5.10)

EPSS

Процентиль: 17%
0.00053
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 3 лет назад

PowerDNS Recursor up to and including 4.5.9, 4.6.2 and 4.7.1, when protobuf logging is enabled, has Improper Cleanup upon a Thrown Exception, leading to a denial of service (daemon crash) via a DNS query that leads to an answer with specific properties.

CVSS3: 6.5
nvd
больше 3 лет назад

PowerDNS Recursor up to and including 4.5.9, 4.6.2 and 4.7.1, when protobuf logging is enabled, has Improper Cleanup upon a Thrown Exception, leading to a denial of service (daemon crash) via a DNS query that leads to an answer with specific properties.

suse-cvrf
больше 3 лет назад

Security update for pdns-recursor

CVSS3: 6.5
github
больше 3 лет назад

PowerDNS Recursor up to and including 4.5.9, 4.6.2 and 4.7.1, when protobuf logging is enabled, has Improper Cleanup upon a Thrown Exception, leading to a denial of service (daemon crash) via a DNS query that leads to an answer with specific properties.

EPSS

Процентиль: 17%
0.00053
Низкий