CVE-2009-4009

EUVD-2009-3980
Buffer overflow in PowerDNS Recursor before 3.1.7.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via crafted packets.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 11%
Affected Products (NVD)
VendorProductVersion
powerdnsrecursor
𝑥
≤ 3.1.7.2
powerdnsrecursor
2.0_rc1:_rc1
powerdnsrecursor
2.8
powerdnsrecursor
2.9.15
powerdnsrecursor
2.9.16
powerdnsrecursor
2.9.17
powerdnsrecursor
2.9.18
powerdnsrecursor
3.0
powerdnsrecursor
3.0.1
powerdnsrecursor
3.1
powerdnsrecursor
3.1.1
powerdnsrecursor
3.1.2
powerdnsrecursor
3.1.3
powerdnsrecursor
3.1.4
powerdnsrecursor
3.1.5
powerdnsrecursor
3.1.6
powerdnsrecursor
3.1.7
powerdnsrecursor
3.1.7.1
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
pdns-recursor
bookworm
4.8.8-1
fixed
bookworm (security)
4.8.8-1
fixed
bullseye
4.4.2-3
fixed
etch
not-affected
sid
5.0.9-1
fixed
trixie
5.0.9-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
pdns-recursor
dapper
dne
hardy
ignored
intrepid
Fixed 3.1.7-1ubuntu0.1
released
jaunty
Fixed 3.1.7-2ubuntu0.1
released
karmic
Fixed 3.1.7-5ubuntu0.1
released
lucid
not-affected
maverick
not-affected
natty
not-affected
oneiric
not-affected