Описание
Incomplete escaping of LDAP queries when running with 8bit-dns enabled allows users to perform queries of internal domain subtrees.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| pdns | fixed | 5.0.4-1 | package | |
| pdns | end-of-life | bookworm | package | |
| pdns | end-of-life | bullseye | package |
Примечания
https://docs.powerdns.com/authoritative/security-advisories/powerdns-advisory-2026-05.html#ldap-dn-injection
EPSS
Процентиль: 16%
0.00242
Низкий
Связанные уязвимости
CVSS3: 5.3
ubuntu
4 месяца назад
Incomplete escaping of LDAP queries when running with 8bit-dns enabled allows users to perform queries of internal domain subtrees.
CVSS3: 5.3
nvd
4 месяца назад
Incomplete escaping of LDAP queries when running with 8bit-dns enabled allows users to perform queries of internal domain subtrees.
CVSS3: 5.3
github
4 месяца назад
Incomplete escaping of LDAP queries when running with 8bit-dns enabled allows users to perform queries of internal domain subtrees.
EPSS
Процентиль: 16%
0.00242
Низкий