CVE-2026-42387
EUVD-2026-3935725.06.2026, 14:16
A malicious authoritative server can send a crafted zone via the ZoneToCache function that leads to a crash of the Recursor due to insuffcient input validation.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| powerdns | recursor | 5.2.0 ≤ 𝑥 < 5.2.11 | CNA |
| powerdns | recursor | 5.3.0 ≤ 𝑥 < 5.3.8 | CNA |
| powerdns | recursor | 5.4.0 ≤ 𝑥 < 5.4.3 | CNA |
Debian Releases
Common Weakness Enumeration