Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue has been found in PowerDNS Recursor before 4.1.18, 4.2.x before 4.2.5, and 4.3.x before 4.3.5. A remote attacker can cause the cached records for a given name to be updated to the Bogus DNSSEC validation state, instead of their actual DNSSEC Secure state, via a DNS ANY query. This results in a denial of service for installation that always validate (dnssec=validate), and for clients requesting validation when on-demand validation is enabled (dnssec=process).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PowerDNS Recursor 安全漏洞
Vulnerability Description
PowerDNS是个人开发者的一款开源DNS服务器。 PowerDNS在Win32下使用 Access的mdb文件记录DNS信息,而在Linux/Unix下则使用MySQL来记录DNS信息。无论是mdb亦或MySQL,备份是非常方便的事情。 PowerDNS Recursor 存在安全漏洞,该漏洞源于。攻击者可利用该漏洞可以通过DNS ANY查询将给定名称的缓存记录更新为虚假的DNSSEC验证状态,而不是它们实际的DNSSEC安全状态。这将导致始终验证(dnssec=validate)的安装拒绝服务,以及
CVSS Information
N/A
Vulnerability Type
N/A