NA

CVE-2024-25583

Published: 25/04/2024 Updated: 01/05/2024

Vulnerability Summary

A crafted response from an upstream server the recursor has been configured to forward-recurse to can cause a Denial of Service in the Recursor. The default configuration of the Recursor does not use recursive forwarding and is not affected.

Vulnerability Trend

Vendor Advisories

Debian Bug report logs - #1069762 pdns-recursor: CVE-2024-25583 Package: src:pdns-recursor; Maintainer for src:pdns-recursor is pdns-recursor packagers <pdns-recursor@packagesdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Wed, 24 Apr 2024 11:45:02 UTC Severity: grave Tags: security Found in ver ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> oss-sec mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> PowerDNS Recursor Security Advisory 2024-02: if recursive forwarding is configured, crafted responses can lead to a denial of s ...