Search CVE reports


Toggle filters

1 – 10 of 75 results


CVE-2026-24027

Medium priority
Needs evaluation

Crafted zones can lead to increased incoming network traffic.

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pdns-recursor Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-0398

Medium priority
Needs evaluation

Crafted zones can lead to increased resource usage and crafted CNAME chains can lead to cache poisoning in Recursor.

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pdns-recursor Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-59030

Medium priority
Needs evaluation

An attacker can trigger the removal of cached records by sending a NOTIFY query over TCP.

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pdns-recursor Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-59029

Medium priority
Needs evaluation

An attacker can trigger an assertion failure by requesting crafted DNS records, waiting for them to be inserted into the records cache, then send a query with qtype set to ANY.

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pdns-recursor Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-59024

Medium priority
Needs evaluation

[Unknown description]

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pdns-recursor Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-59023

Medium priority
Needs evaluation

[Unknown description]

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pdns-recursor Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-30192

Medium priority
Needs evaluation

An attacker spoofing answers to ECS enabled requests sent out by the Recursor has a chance of success higher than non-ECS enabled queries. The updated version include various mitigations against spoofing attempts of ECS enabled...

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pdns-recursor Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2014-7210

Medium priority
Ignored

pdns specific as packaged in Debian in version before 3.3.1-1 creates a too privileged MySQL user. It was discovered that the maintainer scripts of pdns-backend-mysql grant too wide database permissions for the pdns user. Other...

1 affected package

pdns

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pdns Not affected
Show less packages

CVE-2025-30195

Medium priority
Needs evaluation

An attacker can publish a zone containing specific Resource Record Sets. Processing and caching results for these sets can lead to an illegal memory accesses and crash of the Recursor, causing a denial of service. The remedy is:...

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pdns-recursor Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-25590

Medium priority
Needs evaluation

An attacker can publish a zone containing specific Resource Record Sets. Repeatedly processing and caching results for these sets can lead to a denial of service.

1 affected package

pdns-recursor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pdns-recursor Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages