Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Gentoo 200812-19: PowerDNS DoS and Cache Spoofing Risks

gentoo
Calendar Grey December 19, 2008
Scroller Gentoo
The Gentoo GLSA 200812-19 report identifies two PowerDNS vulnerabilities related to Denial of Service (DoS) attacks and caching. Upgrade now for better security
Two vulnerabilities have been discovered in PowerDNS, possibly leading to a Denial of Service and easing cache poisoning attacks.

Summary

Gentoo Linux Security Advisory GLSA 200812-19 https://security.gentoo.org/ Severity: Normal Title: PowerDNS: Multiple vulnerabilities Date: December 19, 2008 Bugs: #234032, #247079 ID: 200812-19

Synopsis ======= Two vulnerabilities have been discovered in PowerDNS, possibly leading to a Denial of Service and easing cache poisoning attacks.
Background ========= The PowerDNS Nameserver is an authoritative-only nameserver which uses a flexible backend architecture.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-dns/pdns < 2.9.21.2 >= 2.9.21.2
========== Daniel Drown reported an error when receiving a HINFO CH query (CVE-2008-5277). B...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround