Unknown · Pdns-Recursor · CVE-2025-59024
**Name of the Vulnerable Software and Affected Versions**
PDNS Recursor versions prior to 5.2.6-0+deb13u1
**Description**
Insufficient validation of delegation information could lead to cache pollution in PDNS Recursor, a resolving name server. The changes required to address this are too extensive to backport to the version of PDNS Recursor included in the oldstable distribution (bookworm).
**Recommendations**
Upgrade pdns-recursor packages to version 5.2.6-0+deb13u1 or later.
For affected setups using the oldstable distribution (bookworm), upgrade to Debian stable/trixie.