Описание
An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 4.0.4, allowing an attacker in position of man-in-the-middle to alter the content of an AXFR because of insufficient validation of TSIG signatures. A missing check of the TSIG time and fudge values was found in AXFRRetriever, leading to a possible replay attack.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | not-affected | 4.0.2-1 |
| cosmic | not-affected | 4.0.2-1 |
| devel | not-affected | 4.0.2-1 |
| disco | not-affected | 4.0.2-1 |
| eoan | not-affected | 4.0.2-1 |
| esm-apps/bionic | not-affected | 4.0.2-1 |
| esm-apps/focal | not-affected | 4.0.2-1 |
| esm-apps/jammy | not-affected | 4.0.2-1 |
| esm-apps/noble | not-affected | 4.0.2-1 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| artful | not-affected | 4.0.4-1 |
| bionic | not-affected | 4.0.4-1 |
| cosmic | not-affected | 4.0.4-1 |
| devel | not-affected | 4.0.4-1 |
| disco | not-affected | 4.0.4-1 |
| eoan | not-affected | 4.0.4-1 |
| esm-apps/bionic | not-affected | 4.0.4-1 |
| esm-apps/focal | not-affected | 4.0.4-1 |
| esm-apps/jammy | not-affected | 4.0.4-1 |
| esm-apps/noble | not-affected | 4.0.4-1 |
Показывать по
EPSS
4.3 Medium
CVSS2
5.3 Medium
CVSS3
Связанные уязвимости
An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 4.0.4, allowing an attacker in position of man-in-the-middle to alter the content of an AXFR because of insufficient validation of TSIG signatures. A missing check of the TSIG time and fudge values was found in AXFRRetriever, leading to a possible replay attack.
An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and Power ...
An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 4.0.4, allowing an attacker in position of man-in-the-middle to alter the content of an AXFR because of insufficient validation of TSIG signatures. A missing check of the TSIG time and fudge values was found in AXFRRetriever, leading to a possible replay attack.
EPSS
4.3 Medium
CVSS2
5.3 Medium
CVSS3