Lucene search

K
debianDebianDEBIAN:DSA-5626-1:479B0
HistoryFeb 18, 2024 - 4:35 p.m.

[SECURITY] [DSA 5626-1] pdns-recursor security update

2024-02-1816:35:24
lists.debian.org
23
pdns-recursor
debian
denial of service
dnssec
security update

AI Score

8.3

Confidence

High

EPSS

0.05

Percentile

92.9%


Debian Security Advisory DSA-5626-1 [email protected]
https://www.debian.org/security/ Moritz Muehlenhoff
February 18, 2024 https://www.debian.org/security/faq


Package : pdns-recursor
CVE ID : CVE-2023-50387 CVE-2023-50868

It was discovered that malformed DNSSEC records within a DNS zone could
result in denial of service against PDNS Recursor, a resolving
name server.

For the stable distribution (bookworm), these problems have been fixed in
version 4.8.6-1.

We recommend that you upgrade your pdns-recursor packages.

For the detailed security status of pdns-recursor please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/pdns-recursor

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: [email protected]

OSVersionArchitecturePackageVersionFilename
Debian12allpdns-recursor< 4.8.6-1pdns-recursor_4.8.6-1_all.deb