CVE-2009-4009

Buffer overflow in PowerDNS Recursor before 3.1.7.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via crafted packets.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 10%
VendorProductVersion
powerdnsrecursor
𝑥
≤ 3.1.7.2
powerdnsrecursor
2.0_rc1:_rc1
powerdnsrecursor
2.8
powerdnsrecursor
2.9.15
powerdnsrecursor
2.9.16
powerdnsrecursor
2.9.17
powerdnsrecursor
2.9.18
powerdnsrecursor
3.0
powerdnsrecursor
3.0.1
powerdnsrecursor
3.1
powerdnsrecursor
3.1.1
powerdnsrecursor
3.1.2
powerdnsrecursor
3.1.3
powerdnsrecursor
3.1.4
powerdnsrecursor
3.1.5
powerdnsrecursor
3.1.6
powerdnsrecursor
3.1.7
powerdnsrecursor
3.1.7.1
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
pdns-recursor
bullseye
4.4.2-3
fixed
etch
not-affected
bookworm
4.8.8-1
fixed
bookworm (security)
4.8.8-1
fixed
sid
5.0.9-1
fixed
trixie
5.0.9-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
pdns-recursor
oneiric
not-affected
natty
not-affected
maverick
not-affected
lucid
not-affected
karmic
Fixed 3.1.7-5ubuntu0.1
released
jaunty
Fixed 3.1.7-2ubuntu0.1
released
intrepid
Fixed 3.1.7-1ubuntu0.1
released
hardy
ignored
dapper
dne