CVE-2006-4252

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
14/11/2006
Last modified:
09/04/2025

Description

PowerDNS Recursor 3.1.3 and earlier allows remote attackers to cause a denial of service (resource exhaustion and application crash) via a CNAME record with a zero TTL, which triggers an infinite loop.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:powerdns:recursor:*:*:*:*:*:*:*:* 3.1.3 (including)
cpe:2.3:a:powerdns:recursor:2.0_rc1:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:2.8:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:2.9.15:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:2.9.16:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:2.9.17:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:2.9.18:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:3.0:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:3.0.1:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:3.1:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:3.1.1:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:3.1.2:*:*:*:*:*:*:*