PowerDNS Authoritative Server Denial of Service Vulnerability (CVE-2015-5311)
PowerDNS Authoritative Server Denial of Service Vulnerability (CVE-2015-5311)
Release date:
Updated on:
Affected Systems:
PowerDNS Authoritative Server 3.4.4-3.4.7
Description:
CVE (CAN) ID: CVE-2015-5311
PowerDNS Authoritative Server provides DNS-related products and services.
PowerDNS Authoritative Server 3.4.4-3.4.7 does not properly process specially crafted query data packets. A data packet parsing security vulnerability exists. Remote attackers can exploit this vulnerability to cause DoS (assertion failure and Server crash ).
<* Source: Christian Hofstaedtler
*>
Suggestion:
Vendor patch:
PowerDNS
--------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://doc.powerdns.com/md/security/powerdns-advisory-2015-03/
This article permanently updates the link address: