CVE-2014-8601
EPSS 0.76%pdns-recursor - security update
Published: 12/10/2014Modified: 4/28/2026
Description
PowerDNS Recursor before 3.6.2 does not limit delegation chaining, which allows remote attackers to cause a denial of service ("performance degradations") via a large or infinite number of referrals, as demonstrated by resolving domains hosted by ezdns.it.
Affected packages (3)
- Debian/pdns-recursorfrom 0, < 3.6.2-1
- Debian/pdns-recursorfrom 0, < 3.2-4+deb6u1
- Debian/pdns-recursorfrom 0, < 3.3-3+deb7u1