Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Update to 5.0.6 CVE-2026-42005 Security Advisory: https://doc.powerdns.com/authoritative/security- advisories/powerdns-advisory-2026-07.html. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-f6ac0db764 2026-07-04 00:49:17.194856+00:00 -------------------------------------------------------------------------------- Name : pdns Product : Fedora 44 Version : 5.0.6 Release : 1.fc44 URL : http://powerdns.com Summary : A modern, advanced and high performance authoritative-only name server Description : The PowerDNS Nameserver is a modern, advanced and high performance authoritative-only name server. It is written from scratch and conforms to all relevant DNS standards documents. Furthermore, PowerDNS interfaces with almost any database. -------------------------------------------------------------------------------- Update Information: Update to 5.0.6 CVE-2026-42005 Security Advisory: https://doc.powerdns.com/authoritative/security- advisories/powerdns-advisory-2026-07.html -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 25 2026 Morten Stevens - 5.0.6-1 - Update to 5.0.6 * Fri Jun 12 2026 Yaakov Selkowitz - 5.0.5-3 - Rebuilt for openssl 4.0 * Fri May 29 2026 Miroslav Suchy - 5.0.5-2 - rebuild for https://fedoraproject.org/wiki/Changes/Protobuf_5.x/6.x -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-f6ac0db764' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Update to 5.0.5 Fix for CVE-2026-42000, CVE-2026-42001, CVE-2026-42002, CVE-2026-41999, CVE-2026-42396 Security Advisory: https://doc.powerdns.com/authoritative/security- advisories/powerdns-advisory-2026-06.html. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-6458693037 2026-05-30 01:07:34.273953+00:00 -------------------------------------------------------------------------------- Name : pdns Product : Fedora 43 Version : 5.0.5 Release : 1.fc43 URL : http://powerdns.com Summary : A modern, advanced and high performance authoritative-only name server Description : The PowerDNS Nameserver is a modern, advanced and high performance authoritative-only name server. It is written from scratch and conforms to all relevant DNS standards documents. Furthermore, PowerDNS interfaces with almost any database. -------------------------------------------------------------------------------- Update Information: Update to 5.0.5 Fix for CVE-2026-42000, CVE-2026-42001, CVE-2026-42002, CVE-2026-41999, CVE-2026-42396 Security Advisory: https://doc.powerdns.com/authoritative/security- advisories/powerdns-advisory-2026-06.html -------------------------------------------------------------------------------- ChangeLog: * Thu May 21 2026 Morten Stevens - 5.0.5-1 - Update to 5.0.5 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-6458693037' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Update to 5.0.5 Fix for CVE-2026-42000, CVE-2026-42001, CVE-2026-42002, CVE-2026-41999, CVE-2026-42396 Security Advisory: https://doc.powerdns.com/authoritative/security- advisories/powerdns-advisory-2026-06.html. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-a6e5b1263b 2026-05-30 00:54:46.011413+00:00 -------------------------------------------------------------------------------- Name : pdns Product : Fedora 44 Version : 5.0.5 Release : 1.fc44 URL : http://powerdns.com Summary : A modern, advanced and high performance authoritative-only name server Description : The PowerDNS Nameserver is a modern, advanced and high performance authoritative-only name server. It is written from scratch and conforms to all relevant DNS standards documents. Furthermore, PowerDNS interfaces with almost any database. -------------------------------------------------------------------------------- Update Information: Update to 5.0.5 Fix for CVE-2026-42000, CVE-2026-42001, CVE-2026-42002, CVE-2026-41999, CVE-2026-42396 Security Advisory: https://doc.powerdns.com/authoritative/security- advisories/powerdns-advisory-2026-06.html -------------------------------------------------------------------------------- ChangeLog: * Thu May 21 2026 Morten Stevens - 5.0.5-1 - Update to 5.0.5 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-a6e5b1263b' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Multiple vulnerabiliites have been discovered in the PowerDNS DNS server, which could result in denial of service or information disclosure. For the stable distribution (trixie), these problems have been fixed in version 4.9.15-0+deb13u1. We recommend that you upgrade your pdns packages.. - ------------------------------------------------------------------------- Debian Security Advisory DSA-6284-1
Update to 5.0.4 Release notes: https://doc.powerdns.com/authoritative/changelog/5.0.html#change-5.0.4 Security advisory: https://docs.powerdns.com/authoritative/security- advisories/powerdns-advisory-2026-05.html. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-edc32576bb 2026-05-06 16:23:49.956298+00:00 -------------------------------------------------------------------------------- Name : pdns Product : Fedora 42 Version : 5.0.4 Release : 1.fc42 URL : http://powerdns.com Summary : A modern, advanced and high performance authoritative-only name server Description : The PowerDNS Nameserver is a modern, advanced and high performance authoritative-only name server. It is written from scratch and conforms to all relevant DNS standards documents. Furthermore, PowerDNS interfaces with almost any database. -------------------------------------------------------------------------------- Update Information: Update to 5.0.4 Release notes: https://doc.powerdns.com/authoritative/changelog/5.0.html#change-5.0.4 Security advisory: https://docs.powerdns.com/authoritative/security- advisories/powerdns-advisory-2026-05.html -------------------------------------------------------------------------------- ChangeLog: * Sun Apr 26 2026 Morten Stevens - 5.0.4-1 - Update to 5.0.4 * Fri Jan 16 2026 Fedora Release Engineering - 5.0.2-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild * Mon Jan 12 2026 Jonathan Wakely - 5.0.2-2 - Rebuilt for Boost 1.90 * Thu Dec 18 2025 Morten Stevens - 5.0.2-1 - Update to 5.0.2 * Fri Dec 5 2025 Orion Poplawski - 5.0.1-2 - Rebuild for yaml-cpp 0.8 (epel10) * Thu Oct 30 2025 Morten Stevens - 5.0.1-1 - Update to 5.0.1 - Enable backend lmdb * Thu Sep 25 2025 Morten Stevens - 5.0.0-1 - Update to 5.0.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2461770 -CVE-2026-33610 pdns: PowerDNS: Denial of Service due to file descriptor exhaustion from rogue primary server DNS update requests [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2461770 [ 2 ] Bug #2461772 - CVE-2026-33611 pdns: PowerDNS: Database corruption due to invalid record data [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2461772 [ 3 ] Bug #2461775 - CVE-2026-33609 pdns: PowerDNS: Information disclosure via incomplete LDAP query escaping [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2461775 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-edc32576bb' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Update to 5.0.4 Release notes: https://doc.powerdns.com/authoritative/changelog/5.0.html#change-5.0.4 Security advisory: https://docs.powerdns.com/authoritative/security- advisories/powerdns-advisory-2026-05.html. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-f416c4ba87 2026-05-06 00:48:51.045739+00:00 -------------------------------------------------------------------------------- Name : pdns Product : Fedora 44 Version : 5.0.4 Release : 1.fc44 URL : http://powerdns.com Summary : A modern, advanced and high performance authoritative-only name server Description : The PowerDNS Nameserver is a modern, advanced and high performance authoritative-only name server. It is written from scratch and conforms to all relevant DNS standards documents. Furthermore, PowerDNS interfaces with almost any database. -------------------------------------------------------------------------------- Update Information: Update to 5.0.4 Release notes: https://doc.powerdns.com/authoritative/changelog/5.0.html#change-5.0.4 Security advisory: https://docs.powerdns.com/authoritative/security- advisories/powerdns-advisory-2026-05.html -------------------------------------------------------------------------------- ChangeLog: * Sun Apr 26 2026 Morten Stevens - 5.0.4-1 - Update to 5.0.4 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2461770 - CVE-2026-33610 pdns: PowerDNS: Denial of Service due to file descriptor exhaustion from rogue primary server DNS update requests [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2461770 [ 2 ] Bug #2461772 - CVE-2026-33611 pdns: PowerDNS: Database corruption due to invalid record data [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2461772 [ 3 ] Bug #2461775 - CVE-2026-33609 pdns: PowerDNS: Information disclosure via incomplete LDAP query escaping [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2461775 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-f416c4ba87' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
- Update to 4.6.2 Release notes: https://doc.powerdns.com/authoritative/changelog/4.6.html#change-4.6.2 ---- - Update to 4.6.1 Release notes: https://doc.powerdns.com/authoritative/changelog/4.6.html#change-4.6.1. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-6e19acf414 2022-04-20 19:15:28.797890 --------------------------------------------------------------------------------Name : pdns Product : Fedora 34 Version : 4.6.2 Release : 1.fc34 URL : https://www.powerdns.com/ Summary : A modern, advanced and high performance authoritative-only nameserver Description : The PowerDNS Nameserver is a modern, advanced and high performance authoritative-only nameserver. It is written from scratch and conforms to all relevant DNS standards documents. Furthermore, PowerDNS interfaces with almost any database. --------------------------------------------------------------------------------Update Information: - Update to 4.6.2 Release notes: https://doc.powerdns.com/authoritative/changelog/4.6.html#change-4.6.2 ---- -Update to 4.6.1 Release notes: https://doc.powerdns.com/authoritative/changelog/4.6.html#change-4.6.1 --------------------------------------------------------------------------------ChangeLog: * Tue Apr 12 2022 Morten Stevens - 4.6.2-1 - Update to 4.6.2 * Sun Apr 10 2022 Morten Stevens - 4.6.1-1 - Update to 4.6.1 * Tue Jan 25 2022 Morten Stevens - 4.6.0-1 - Update to 4.6.0 --------------------------------------------------------------------------------References: [ 1 ] Bug #2069400 - CVE-2022-27227 pdns: pdns,pdns-recursor: Incomplete zone transfers handled as successful [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2069400 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-6e19acf414' at the command line. Formore information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
The package powerdns before version 4.5.1-1 is vulnerable to denial of service. . Arch Linux Security Advisory ASA-202107-73 ========================================= Severity: Medium Date : 2021-07-27 CVE-ID : CVE-2021-36754 Package : powerdns Type : denial of service Remote : Yes Link : https://security.archlinux.org/AVG-2222 Summary ====== The package powerdns before version 4.5.1-1 is vulnerable to denial of service. Resolution ========= Upgrade to 4.5.1-1. # pacman -Syu "powerdns> =4.5.1-1" The problem has been fixed upstream in version 4.5.1. Workaround ========= Users that cannot upgrade immediately, but do have dnsdist in place, can use dnsdist to filter such queries before they do harm, with something like addAction(QTypeRule(65535), RCodeAction(DNSRCode.REFUSED)). Description ========== PowerDNS Authoritative Server 4.5.0 will crash with an uncaught out of bounds exception if it receives a query with QTYPE 65535. The offending code was not present in earlier versions, and they are not affected. Users that cannot upgrade immediately, but do have dnsdist in place, can use dnsdist to filter such queries before they do harm, with something like addAction(QTypeRule(65535), RCodeAction(DNSRCode.REFUSED)). When the PowerDNS Authoritative Server is run inside a supervisor like supervisord or systemd, an uncaught exception crash will lead to an automatic restart, limiting the impact to a somewhat degraded service. Impact ===== A remote attacker could crash the DNS server with a crafted query. References ========= https://doc.powerdns.com/authoritative/security-advisories/powerdns-advisory-2021-01.html https://downloads.powerdns.com/patches/2021-01/pdns-4.5.0-2021-01.patch https://github.com/PowerDNS/pdns/commit/96cae2fd21054b383a16c569a363a50f71808cd9 https://security.archlinux.org/CVE-2021-36754 . The Arch Linux team has released a security advisory about a denial of service vulnerability in PowerDNS. Users should upgrade promptly to mitigate potential risks.. Arch Linux, PowerDNS,Security Advisory. . Severity: Medium. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.