PT-2005-3230 · Powerdns · Powerdns+1
Wilco Baan
·
Published
2005-07-19
·
Updated
2016-10-18
·
CVE-2005-2302
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions:
PowerDNS versions prior to 2.9.18
Description:
The issue arises when PowerDNS is configured to allow recursion to a restricted range of IP addresses. In such cases, it fails to properly handle questions from clients that are denied recursion. This could lead to a situation where answers to those clients that are allowed to use recursion are "blanked out".
Recommendations:
For PowerDNS versions prior to 2.9.18, update to version 2.9.18 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Powerdns
Powerdns Authoritative Server