Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-6369-1 | pdns-recursor security update |
Thu, 25 Jun 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Powerdns
Powerdns recursor |
|
| Vendors & Products |
Powerdns
Powerdns recursor |
Thu, 25 Jun 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-20 | |
| Metrics |
ssvc
|
Thu, 25 Jun 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A malicious authoritative server can send a crafted zone via the ZoneToCache function that leads to a crash of the Recursor due to insuffcient input validation. | |
| Title | Insufficient input validation in ZoneToCache | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: OX
Published:
Updated: 2026-06-25T14:41:46.920Z
Reserved: 2026-04-27T08:53:58.838Z
Link: CVE-2026-42387
Updated: 2026-06-25T14:41:43.087Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-25T22:00:12Z
Debian DSA