Related Vulnerabilities: CVE-2019-3806  

An issue has been found in PowerDNS Recursor before 4.1.9 where Lua hooks are not properly applied to queries received over TCP in some specific combination of settings, possibly bypassing security policies enforced using Lua.

Severity Low

Remote Yes

Type Access restriction bypass

Description

An issue has been found in PowerDNS Recursor before 4.1.9 where Lua hooks are not properly applied to queries received over TCP in some specific combination of settings, possibly bypassing security policies enforced using Lua.

AVG-856 powerdns-recursor 4.1.8-1 4.1.9-1 Medium Fixed

24 Jan 2019 ASA-201901-13 AVG-856 powerdns-recursor Medium multiple issues