PT-2025-43558 · Debian+3 · Debian+3

Baojun Liu

+4

·

Published

2025-01-01

·

Updated

2026-04-28

·

CVE-2025-59023

CVSS v2.0

8.5

High

VectorAV:N/AC:L/Au:N/C:N/I:C/A:P
Name of the Vulnerable Software and Affected Versions PowerDNS Recursor versions prior to 5.2.6-0+deb13u1
Description Insufficient validation of delegation information could lead to cache pollution in PowerDNS Recursor, a resolving name server. Updates will not be backported to the version of PDNS recursor in the oldstable distribution (bookworm).
Recommendations Upgrade pdns-recursor packages to version 5.2.6-0+deb13u1. For affected setups, an update to Debian stable/trixie is recommended.

Fix

Special Elements Injection

Weakness Enumeration

Related Identifiers

BDU:2026-00247
CVE-2025-59023
DSA-6045-1

Affected Products

Debian
Powerdns Recursor
Red Os
Pdns-Recursor