VDB

CVE-2018-10851

CVE-2018-10851 PUBLISHED

PowerDNS Authoritative Server 3.3.0 up to 4.1.4 excluding 4.1.5 and 4.0.6, and PowerDNS Recursor 3.2 up to 4.1.4 excluding 4.1.5 and 4.0.9, are vulnerable to a memory leak while parsing malformed records that can lead to remote denial of service.

EPSS 0.11% · 28.7th percentile

Risk Scores

EPSS Score
0.11%
28.7th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSpdns-recursor*, 0, 3.7.3-1
Ubuntu:Pro:18.04:LTSpdns4.0.4-2build1, 0, 4.0.4-2
Ubuntu:Pro:18.04:LTSpdns-recursor4.0.6-1, 4.0.6-1build1, 0
Ubuntu:Pro:16.04:LTSpdns3.4.6-2, *, 4.0.0~alpha2-3

Timeline

  • Nov 6, 2018 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 2, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
  • Jan 8, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›