CVE-2005-2302
published 2005-07-19CVE-2005-2302: PowerDNS before 2.9.18, when allowing recursion to a restricted range of IP addresses, does not properly handle questions from clients that are denied…
PriorityP48low2.1CVSS 2.0
AVLACLAuNCNINAP
EPSS
0.39%
31.2th percentile
PowerDNS before 2.9.18, when allowing recursion to a restricted range of IP addresses, does not properly handle questions from clients that are denied recursion, which could cause a "blank out" of answers to those clients that are allowed to use recursion.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pdns | < pdns 2.9.18-1 (bookworm) | pdns 2.9.18-1 (bookworm) |
| open-xchange | pdns | >= 0 < 2.9.18-1 | 2.9.18-1 |
| open-xchange | pdns | >= 0 < 2.9.18-1 | 2.9.18-1 |
| open-xchange | pdns | >= 0 < 2.9.18-1 | 2.9.18-1 |
| open-xchange | pdns | >= 0 < 2.9.18-1 | 2.9.18-1 |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
| powerdns | powerdns | — | — |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
osv2.1LOW
vendor_debian2.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6w24-r92j-wj7q: PowerDNS before 2
ghsa_unreviewed·2022-05-01
CVE-2005-2302 [LOW] GHSA-6w24-r92j-wj7q: PowerDNS before 2
PowerDNS before 2.9.18, when allowing recursion to a restricted range of IP addresses, does not properly handle questions from clients that are denied recursion, which could cause a "blank out" of answers to those clients that are allowed to use recursion.
OSV
CVE-2005-2302: PowerDNS before 2
osv·2005-07-19·CVSS 2.1
CVE-2005-2302 [LOW] CVE-2005-2302: PowerDNS before 2
PowerDNS before 2.9.18, when allowing recursion to a restricted range of IP addresses, does not properly handle questions from clients that are denied recursion, which could cause a "blank out" of answers to those clients that are allowed to use recursion.
Debian
CVE-2005-2302: pdns - PowerDNS before 2.9.18, when allowing recursion to a restricted range of IP addr...
vendor_debian·2005·CVSS 2.1
CVE-2005-2302 [LOW] CVE-2005-2302: pdns - PowerDNS before 2.9.18, when allowing recursion to a restricted range of IP addr...
PowerDNS before 2.9.18, when allowing recursion to a restricted range of IP addresses, does not properly handle questions from clients that are denied recursion, which could cause a "blank out" of answers to those clients that are allowed to use recursion.
Scope: local
bookworm: resolved (fixed in 2.9.18-1)
bullseye: resolved (fixed in 2.9.18-1)
forky: resolved (fixed in 2.9.18-1)
sid: resolved (fixed in 2.9.18-1)
trixie: resolved (fixed in 2.9.18-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://doc.powerdns.com/changelog.html#CHANGELOG-2-9-18http://marc.info/?l=bugtraq&m=112155941310297&w=2http://securitytracker.com/id?1014504http://www.novell.com/linux/security/advisories/2005_19_sr.htmlhttp://doc.powerdns.com/changelog.html#CHANGELOG-2-9-18http://marc.info/?l=bugtraq&m=112155941310297&w=2http://securitytracker.com/id?1014504http://www.novell.com/linux/security/advisories/2005_19_sr.html
2005-07-19
Published