Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-33611

Опубликовано: 22 апр. 2026
Источник: debian
EPSS Низкий

Описание

An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data, which can in turn cause LMDB database corruption, if using the LMDB backend.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pdnsfixed5.0.4-1package
pdnsend-of-lifebookwormpackage
pdnsend-of-lifebullseyepackage

Примечания

  • https://docs.powerdns.com/authoritative/security-advisories/powerdns-advisory-2026-05.html#insufficient-validation-of-https-and-svcb-records

EPSS

Процентиль: 35%
0.00423
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
4 месяца назад

An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data, which can in turn cause LMDB database corruption, if using the LMDB backend.

CVSS3: 6.5
nvd
4 месяца назад

An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data, which can in turn cause LMDB database corruption, if using the LMDB backend.

CVSS3: 6.5
github
4 месяца назад

An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data, which can in turn cause LMDB database corruption, if using the LMDB backend.

EPSS

Процентиль: 35%
0.00423
Низкий