CVE-2019-10163
30.07.2019, 23:15
A Vulnerability has been found in PowerDNS Authoritative Server before versions 4.1.9, 4.0.8 allowing a remote, authorized master server to cause a high CPU load or even prevent any further updates to any slave zone by sending a large number of NOTIFY messages. Note that only servers configured as slaves are affected by this issue.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| powerdns | authoritative | 4.0.0 ≤ 𝑥 < 4.0.8 |
| powerdns | authoritative | 4.1.0 ≤ 𝑥 < 4.1.9 |
| powerdns | authoritative | 4.1.0 |
| opensuse | leap | 15.0 |
| opensuse | leap | 15.1 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| powerdns | pdns | 𝑥 ≤ 4.1.9 | CNA |
| powerdns | pdns | 𝑥 ≤ 4.0.8 | CNA |
Debian Releases
Ubuntu Releases
References