CVE-2025-30195
Severity CVSS v4.0:
Pending analysis
Type:
CWE-476
NULL Pointer Dereference
Publication date:
07/04/2025
Last modified:
15/04/2026
Description
An attacker can publish a zone containing specific Resource Record Sets. Processing and caching results for these sets can lead to an illegal memory accesses and crash of the Recursor, causing a denial of service.<br />
<br />
The remedy is: upgrade to the patched 5.2.1 version.<br />
<br />
We would like to thank Volodymyr Ilyin for bringing this issue to our attention.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH



