Unrated severityNVD Advisory· Published Jul 30, 2019· Updated Aug 4, 2024
CVE-2019-10163
CVE-2019-10163
Description
A Vulnerability has been found in PowerDNS Authoritative Server before versions 4.1.9, 4.0.8 allowing a remote, authorized master server to cause a high CPU load or even prevent any further updates to any slave zone by sending a large number of NOTIFY messages. Note that only servers configured as slaves are affected by this issue.
Affected products
7- osv-coords6 versionspkg:rpm/opensuse/pdns&distro=openSUSE%20Leap%2015.0pkg:rpm/opensuse/pdns&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/pdns&distro=openSUSE%20Tumbleweedpkg:rpm/suse/pdns&distro=SUSE%20Package%20Hub%2012%20SP1pkg:rpm/suse/pdns&distro=SUSE%20Package%20Hub%2015pkg:rpm/suse/pdns&distro=SUSE%20Package%20Hub%2015%20SP1
< 4.1.2-bp150.2.9.1+ 5 more
- (no CPE)range: < 4.1.2-bp150.2.9.1
- (no CPE)range: < 4.1.2-bp150.2.9.1
- (no CPE)range: < 4.5.1-1.5
- (no CPE)range: < 4.1.2-bp150.2.9.1
- (no CPE)range: < 4.1.2-bp150.2.9.1
- (no CPE)range: < 4.1.8-bp151.3.3.1
- PowerDNS/pdnsv5Range: fixed in 4.1.9
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- lists.opensuse.org/opensuse-security-announce/2019-08/msg00036.htmlmitrevendor-advisoryx_refsource_SUSE
- lists.opensuse.org/opensuse-security-announce/2019-08/msg00054.htmlmitrevendor-advisoryx_refsource_SUSE
- blog.powerdns.com/2019/06/21/powerdns-authoritative-server-4-0-8-and-4-1-10-released/mitrex_refsource_CONFIRM
- bugzilla.redhat.com/show_bug.cgimitrex_refsource_CONFIRM
- doc.powerdns.com/authoritative/security-advisories/powerdns-advisory-2019-05.htmlmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.