CVE-2018-16855 PUBLISHED

An issue has been found in PowerDNS Recursor before version 4.1.8 where a remote attacker sending a DNS query can trigger an out-of-bounds memory read while computing the hash of the query for a packet cache lookup, possibly leading to a crash.

EPSS 19.83% · 95.4th percentile

Risk Scores

EPSS Score
19.83%
95.4th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:18.04:LTSpdns-recursor0, 4.0.6-1, 4.0.6-1build1

Timeline

References

Open in Interactive Console →