PowerDNS DNSdist
cpe:2.3:a:powerdns:dnsdist:*:*:*:*:*:*:*
- <= 2.0.3
- <= 1.9.12
A vulnerability in PowerDNS DNSdist versions prior to 1.9.13 and 2.0.4 allows clients to cause excessive memory allocation by generating numerous error responses over a single DoQ or DoH3 connection. This issue arises because certain resources are not properly released until the connection ends, leading to a denial-of-service condition.
Exploitation of this vulnerability causes unlimited memory allocation, leading to a denial-of-service condition where the application may become unresponsive or crash.
Users can upgrade to PowerDNS DNSdist versions 1.9.13 or 2.0.4, or disable DoQ and DoH3, which are disabled by default.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.