CVE-2026-33602
EUVD-2026-2494322.04.2026, 14:16
A rogue backend can send a crafted UDP response with a query ID off by one related to the maximum configured value, triggering an out-of-bounds write leading to a denial of service.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| powerdns | dnsdist | 1.9.0 ≤ 𝑥 < 1.9.13 | CNA |
| powerdns | dnsdist | 2.0.0 ≤ 𝑥 < 2.0.4 | CNA |
Debian Releases