An attacker can trigger the removal of cached records by sending a NOTIFY query over TCP.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade pdns-recursor | Dec 15, 2025 | Dec 9, 2025 |
| Debian | — | Upgrade pdns-recursor | Jul 23, 2026 | Jul 23, 2026 |
| Freebsd | — | Upgrade powerdns-recursor | Feb 17, 2026 | Feb 16, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub