VYPR
Unrated severityNVD Advisory· Published Jul 19, 2005· Updated Apr 16, 2026

CVE-2005-2301

CVE-2005-2301

Description

PowerDNS before 2.9.18, when running with an LDAP backend, does not properly escape LDAP queries, which allows remote attackers to cause a denial of service (failure to answer ldap questions) and possibly conduct an LDAP injection attack.

Affected products

17
  • PowerDNS/Powerdns17 versions
    cpe:2.3:a:powerdns:powerdns:2.9.0:*:*:*:*:*:*:*+ 16 more
    • cpe:2.3:a:powerdns:powerdns:2.9.0:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.1:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.10:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.11:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.12:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.13:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.14:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.15:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.16:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.17:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.2:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.3a:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.4:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.5:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.6:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.7:*:*:*:*:*:*:*
    • cpe:2.3:a:powerdns:powerdns:2.9.8:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.