Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.141653
Category:Denial of Service
Title:PowerDNS Authoritative Server Zone Record DoS Vulnerability
Summary:An issue has been found in PowerDNS Authoritative Server allowing an;authorized user to cause a memory leak by inserting a specially crafted record in a zone under their control, then;sending a DNS query for that record. The issue is due to the fact that some memory is allocated before the parsing;and is not always properly released if the record is malformed.
Description:Summary:
An issue has been found in PowerDNS Authoritative Server allowing an
authorized user to cause a memory leak by inserting a specially crafted record in a zone under their control, then
sending a DNS query for that record. The issue is due to the fact that some memory is allocated before the parsing
and is not always properly released if the record is malformed.

Affected Software/OS:
PowerDNS Authoritative Server versions 3.3.0 to 4.1.4.

Solution:
Upgrade to version 4.0.6, 4.1.5 or later.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2018-10851
CopyrightCopyright (C) 2018 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.