Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2534▼ 399 respecto a la semana anterior
Críticas / altas1321▲ 41 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)96▼ 431 respecto a la semana anterior
–

26 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaBaja (3.7)0.22%—Powerdns DnsdistAI25/6/202625/6/2026
An attacker can send a crafted EDNS OPT record that will be ignored by DNSdist’s filtering rules, but will be rewritten as a valid OPT record when EDNS Client Subnet is inserted, causing the backend to see the EDNS option(s) that DNSdist did not filter.
AnalizadaAlta (8.2)1.2%—Powerdns Dnsdist22/4/202617/6/2026
A rogue backend can send a crafted UDP response with a query ID off by one related to the maximum configured value, triggering an out-of-bounds write leading to a denial of service.
AnalizadaAlta (8.1)0.80%—Powerdns Dnsdist22/4/202617/6/2026
A rogue backend can send a crafted SVCB response to a Discovery of Designated Resolvers request, when requested via either the autoUpgrade (Lua) option to newServer or auto_upgrade (YAML) settings. DDR upgrade is not enabled by default.
AnalizadaCrítica (9.1)2.8%—Powerdns Dnsdist22/4/202617/6/2026
A cached crafted response can cause an out-of-bounds read if custom Lua code calls getDomainListByAddress() or getAddressListByDomain() on a packet cache.
AnalizadaAlta (7.5)0.75%—Powerdns Dnsdist22/4/202617/6/2026
PRSD detection denial of service
AnalizadaMedia (6.5)0.39%—Powerdns Dnsdist22/4/202617/6/2026
A client might theoretically be able to cause a mismatch between queries sent to a backend and the received responses by sending a flood of perfectly timed queries that are routed to a TCP-only or DNS over TLS backend.
AnalizadaAlta (7.5)0.80%—Powerdns Dnsdist22/4/202617/6/2026
A client can trigger excessive memory allocation by generating a lot of errors responses over a single DoQ and DoH3 connection, as some resources were not properly released until the end of the connection.
AnalizadaAlta (7.5)0.80%—Powerdns Dnsdist22/4/202617/6/2026
A client can trigger excessive memory allocation by generating a lot of queries that are routed to an overloaded DoH backend, causing queries to accumulate into a buffer that will not be released until the end of the connection.
AnalizadaAlta (7.5)0.82%—Powerdns Dnsdist22/4/202617/6/2026
A client can trigger a divide by zero error leading to crash by sending a crafted DNSCrypt query.
AnalizadaAlta (7.5)0.80%—Powerdns Dnsdist22/4/202617/6/2026
An attacker can create a large number of concurrent DoQ or DoH3 connections, causing unlimited memory allocation in DNSdist and leading to a denial of service. DOQ and DoH3 are disabled by default.
AnalizadaAlta (7.5)1.1%—Powerdns AuthoritativePowerdns DnsdistPowerdns Recursor22/4/202617/6/2026
An attacker can send a web request that causes unlimited memory allocation in the internal web server, leading to a denial of service. The internal web server is disabled by default.
AnalizadaAlta (7.5)1.1%—Powerdns AuthoritativePowerdns DnsdistPowerdns Recursor22/4/202617/6/2026
An attacker can send a web request that causes unlimited memory allocation in the internal web server, leading to a denial of service. The internal web server is disabled by default.
AnalizadaAlta (7.5)1.3%—Powerdns Dnsdist31/3/202625/7/2026
An attacker might be able to trigger a use-after-free by sending crafted DNS queries to a DNSdist using the DNSQuestion:getEDNSOptions method in custom Lua code. In some cases DNSQuestion:getEDNSOptions might refer to a version of the DNS packet that has been modified, thus triggering a use-after-free and potentially…
AnalizadaAlta (7.5)1.5%—Powerdns Dnsdist31/3/202625/7/2026
An attacker might be able to trigger an out-of-bounds write by sending crafted DNS responses to a DNSdist using the DNSQuestion:changeName or DNSResponse:changeName methods in custom Lua code. In some cases the rewritten packet might become larger than the initial response and even exceed 65535 bytes, potentially…
AnalizadaAlta (7.5)0.54%—Powerdns Dnsdist31/3/202625/7/2026
An attacker might be able to trick DNSdist into allocating too much memory while processing DNS over QUIC or DNS over HTTP/3 payloads, resulting in a denial of service. In setups with a large quantity of memory available this usually results in an exception and the QUIC connection is properly closed, but in some cases…
AnalizadaMedia (6.5)0.15%—Powerdns Dnsdist31/3/202625/7/2026
When the early_acl_drop (earlyACLDrop in Lua) option is disabled (default is enabled) on a DNS over HTTPs frontend using the nghttp2 provider, the ACL check is skipped, allowing all clients to send DoH queries regardless of the configured ACL.
AnalizadaAlta (8.2)1.0%—Powerdns Dnsdist31/3/202625/7/2026
An attacker might be able to trigger an out-of-bounds read by sending a crafted DNS response packet, when custom Lua code uses newDNSPacketOverlay to parse DNS packets. The out-of-bounds read might trigger a crash, leading to a denial of service, or access unrelated memory, leading to potential information disclosure.
AnalizadaMedia (4.3)0.16%—Powerdns Dnsdist31/3/202625/7/2026
When the internal webserver is enabled (default is disabled), an attacker might be able to trick an administrator logged to the dashboard into visiting a malicious website and extract information about the running configuration from the dashboard. The root cause of the issue is a misconfiguration of the Cross-Origin…
AnalizadaMedia (4.3)0.14%—Powerdns Dnsdist31/3/202625/7/2026
An attacker might be able to inject HTML content into the internal web dashboard by sending crafted DNS queries to a DNSdist instance where domain-based dynamic rules have been enabled via either DynBlockRulesGroup:setSuffixMatchRule or DynBlockRulesGroup:setSuffixMatchRuleFFI.
AplazadaBaja (3.7)0.29%—Nghttp2AIPowerdns DnsdistAI18/9/202517/6/2026
In some circumstances, when DNSdist is configured to use the nghttp2 library to process incoming DNS over HTTPS queries, an attacker might be able to cause a denial of service by crafting a DoH exchange that triggers an unbounded I/O read loop, causing an unexpected consumption of CPU resources.
AplazadaAlta (7.5)0.61%—Powerdns DnsdistAI20/5/202517/6/2026
In some circumstances, when DNSdist is configured to allow an unlimited number of queries on a single, incoming TCP connection from a client, an attacker can cause a denial of service by crafting a TCP exchange that triggers an exhaustion of the stack and a crash of DNSdist, causing a denial of service. The remedy is:…
AplazadaAlta (7.5)2.3%—Nghttp2AIH2OAIPowerdns DnsdistAI29/4/202517/6/2026
When DNSdist is configured to provide DoH via the nghttp2 provider, an attacker can cause a denial of service by crafting a DoH exchange that triggers an illegal memory access (double-free) and crash of DNSdist, causing a denial of service. The remedy is: upgrade to the patched 1.9.9 version. A workaround is to…
AplazadaAlta (7.5)1.1%—Powerdns DnsdistAI14/5/202417/6/2026
When incoming DNS over HTTPS support is enabled using the nghttp2 provider, and queries are routed to a tcp-only or DNS over TLS backend, an attacker can trigger an assertion failure in DNSdist by sending a request for a zone transfer (AXFR or IXFR) over DNS over HTTPS, causing the process to stop and thus leading to…
ModificadaMedia (5.9)2.6%—Powerdns Dnsdist26/11/201817/6/2026
An issue has been found in PowerDNS DNSDist before 1.3.3 allowing a remote attacker to craft a DNS query with trailing data such that the addition of a record by dnsdist, for example an OPT record when adding EDNS Client Subnet, might result in the trailing data being smuggled to the backend as a valid record while…
ModificadaAlta (7.5)4.6%—Powerdns Dnsdist11/9/201817/6/2026
An issue has been found in dnsdist before 1.2.0 in the way EDNS0 OPT records are handled when parsing responses from a backend. When dnsdist is configured to add EDNS Client Subnet to a query, the response may contain an EDNS0 OPT record that has to be removed before forwarding the response to the initial client. On a…