PT-2026-34437 · Powerdns · Dnsdist

Haruto Kimura

·

Published

2026-04-22

·

Updated

2026-04-28

·

CVE-2026-33593

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions PowerDNS dnsdist versions 1.9.0 through 1.9.12 PowerDNS dnsdist versions 2.0.0 through 2.0.3
Description An unauthenticated remote attacker can cause a denial-of-service by sending a crafted DNSCrypt query. This action triggers a divide-by-zero error, which leads to a crash of internet-facing instances with DNSCrypt enabled.
Recommendations Update PowerDNS dnsdist versions 1.9.0 through 1.9.12 to version 1.9.13. Update PowerDNS dnsdist versions 2.0.0 through 2.0.3 to version 2.0.4.

Fix

DoS

Divide By Zero

Weakness Enumeration

Related Identifiers

CVE-2026-33593
OPENSUSE-SU-2026:10632-1

Affected Products

Dnsdist