Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-22617
HistoryJan 21, 2023 - 7:15 p.m.

Design/Logic Flaw

2023-01-2119:15:00
PRIOn knowledge base
www.prio-n.com
9
remote attacker
powerdns recursor
dns query
ds records
misconfigured domain
qname minimization
nvd
infinite recursion vulnerability

7.2 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

65.4%

A remote attacker might be able to cause infinite recursion in PowerDNS Recursor 4.8.0 via a DNS query that retrieves DS records for a misconfigured domain, because QName minimization is used in QM fallback mode. This is fixed in 4.8.1.

CPENameOperatorVersion
recursoreq4.8.0

7.2 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

65.4%