CVE-2006-4251
published 2006-11-14CVE-2006-4251: Buffer overflow in PowerDNS Recursor 3.1.3 and earlier might allow remote attackers to execute arbitrary code via a malformed TCP DNS query that prevents…
PriorityP342high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
8.44%
94.4th percentile
Buffer overflow in PowerDNS Recursor 3.1.3 and earlier might allow remote attackers to execute arbitrary code via a malformed TCP DNS query that prevents Recursor from properly calculating the TCP DNS query length.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pdns | < pdns 2.9.20-4 (bookworm) | pdns 2.9.20-4 (bookworm) |
| debian | pdns-recursor | < pdns 2.9.20-4 (bookworm) | pdns 2.9.20-4 (bookworm) |
| open-xchange | pdns | >= 0 < 2.9.20-4 | 2.9.20-4 |
| open-xchange | pdns | >= 0 < 2.9.20-4 | 2.9.20-4 |
| open-xchange | pdns | >= 0 < 2.9.20-4 | 2.9.20-4 |
| open-xchange | pdns | >= 0 < 2.9.20-4 | 2.9.20-4 |
| powerdns | recursor | <= 3.1.3 | — |
| powerdns | recursor | — | — |
| powerdns | recursor | — | — |
| powerdns | recursor | — | — |
| powerdns | recursor | — | — |
| powerdns | recursor | — | — |
| powerdns | recursor | — | — |
| powerdns | recursor | — | — |
| powerdns | recursor | — | — |
| powerdns | recursor | — | — |
| powerdns | recursor | — | — |
| powerdns | recursor | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xh75-hw4q-gr36: Buffer overflow in PowerDNS Recursor 3
ghsa_unreviewed·2022-05-01
CVE-2006-4251 [HIGH] GHSA-xh75-hw4q-gr36: Buffer overflow in PowerDNS Recursor 3
Buffer overflow in PowerDNS Recursor 3.1.3 and earlier might allow remote attackers to execute arbitrary code via a malformed TCP DNS query that prevents Recursor from properly calculating the TCP DNS query length.
OSV
CVE-2006-4251: Buffer overflow in PowerDNS Recursor 3
osv·2006-11-14·CVSS 7.5
CVE-2006-4251 [HIGH] CVE-2006-4251: Buffer overflow in PowerDNS Recursor 3
Buffer overflow in PowerDNS Recursor 3.1.3 and earlier might allow remote attackers to execute arbitrary code via a malformed TCP DNS query that prevents Recursor from properly calculating the TCP DNS query length.
Debian
CVE-2006-4251: pdns - Buffer overflow in PowerDNS Recursor 3.1.3 and earlier might allow remote attack...
vendor_debian·2006·CVSS 7.5
CVE-2006-4251 [HIGH] CVE-2006-4251: pdns - Buffer overflow in PowerDNS Recursor 3.1.3 and earlier might allow remote attack...
Buffer overflow in PowerDNS Recursor 3.1.3 and earlier might allow remote attackers to execute arbitrary code via a malformed TCP DNS query that prevents Recursor from properly calculating the TCP DNS query length.
Scope: local
bookworm: resolved (fixed in 2.9.20-4)
bullseye: resolved (fixed in 2.9.20-4)
forky: resolved (fixed in 2.9.20-4)
sid: resolved (fixed in 2.9.20-4)
trixie: resolved (fixed in 2.9.20-4)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://doc.powerdns.com/powerdns-advisory-2006-01.htmlhttp://lists.suse.com/archive/suse-security-announce/2006-Nov/0007.htmlhttp://secunia.com/advisories/22824http://secunia.com/advisories/22903http://secunia.com/advisories/22976http://www.debian.org/security/2006/dsa-1211http://www.securityfocus.com/bid/21037http://www.vupen.com/english/advisories/2006/4484https://exchange.xforce.ibmcloud.com/vulnerabilities/30270http://doc.powerdns.com/powerdns-advisory-2006-01.htmlhttp://lists.suse.com/archive/suse-security-announce/2006-Nov/0007.htmlhttp://secunia.com/advisories/22824http://secunia.com/advisories/22903http://secunia.com/advisories/22976http://www.debian.org/security/2006/dsa-1211http://www.securityfocus.com/bid/21037http://www.vupen.com/english/advisories/2006/4484https://exchange.xforce.ibmcloud.com/vulnerabilities/30270
2006-11-14
Published