Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Debian: pdns-recursor Critical Cache Pollution Threat DSA-6045-1

debian
Calendar Grey October 29, 2025
Debian Logo
Cache pollution vulnerabilities in PDNS Recursor identified in Debian DSA-6045-1. Immediate updates are recommended.
Two vulnerabiliites have been discovered in PDNS Recursor, a resolving name server: Delegation information was insufficiently validated, which could result in cache pollution

Summary

Two vulnerabiliites have been discovered in PDNS Recursor, a resolving
name server: Delegation information was insufficiently validated, which
could result in cache pollution.

These changes are too intrusive to be backported to the version of
the PDNS recursor in the oldstable distribution (bookworm). For
affected setups an update to Debian stable/trixie is recommended,
no further security updates for pdns-recursor in Bookworm will be issued.

For the stable distribution (trixie), these problems have been fixed in
version 5.2.6-0+deb13u1.

We recommend that you upgrade your pdns-recursor packages.

For the detailed security status of pdns-recursor please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/pdns-recursor

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: pdns-recursor
CVE ID: CVE-2025-59023 CVE-2025-59024

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here