LWN.net Logo

PowerDNS: denial of service

Package(s):pdns CVE #(s):CAN-2005-2301 CAN-2005-2302
Created:August 1, 2005 Updated:August 3, 2005
Description: PowerDNS before 2.9.18 has several vulnerabilities. The LDAP backend does not properly escape all queries, allowing it to fail and not answer queries anymore. Queries from clients without recursion permission can temporarily blank out domains to clients with recursion permitted. This enables outside users to blank out a domain temporarily to normal users.
Alerts:
Debian DSA-771-1 2005-08-01

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds