A crafted response from an upstream server the recursor has been configured to forward-recurse to can cause a Denial of Service in the Recursor. The default configuration of the Recursor does not use recursive forwarding and is not affected.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade pdns-recursor | Aug 22, 2024 | Apr 25, 2024 |
| Debian | — | Upgrade pdns-recursor | Apr 29, 2024 | Apr 25, 2024 |
| Freebsd | — | Upgrade powerdns-recursor | Dec 10, 2025 | Apr 24, 2024 |
| Suse | — | Upgrade pdns-recursor | Apr 30, 2024 | Apr 25, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub