CVE-2014-8601 PUBLISHED

PowerDNS Recursor before 3.6.2 does not limit delegation chaining, which allows remote attackers to cause a denial of service ("performance degradations") via a large or infinite number of referrals, as demonstrated by resolving domains hosted by ezdns.it.

EPSS 0.76% · 73.2th percentile

Risk Scores

EPSS Score
0.76%
73.2th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSpdns-recursor0, 3.3-3, 3.5.3-1

Timeline

References

Open in Interactive Console →