- What: Security update for pdns
- Impact: Debian users need to update to fix denial of service vulnerability
[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index] [SECURITY] [DSA 6368-1] pdns security update To: debian-security-announce@lists.debian.org Subject: [SECURITY] [DSA 6368-1] pdns security update From: Moritz Muehlenhoff <jmm@debian.org> Date: Thu, 25 Jun 2026 19:21:43 +0000 Message-id: <[🔎] aj1_x8y_1UAzOoIZ@seger.debian.org> Reply-to: debian-security-announce-request@lists.debian.org -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-6368-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff June 25, 2026 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : pdns CVE ID : CVE-2026-42005 It was discovered that incorrect request handling in the internal web server of the PowerDNS DNS server could result in denial of service. For the stable distribution (trixie), this problem has been fixed in version 4.9.16-0+deb13u1. We recommend that you upgrade your pdns packages. For the detailed security status of pdns please refer to its security tracker page at: https://security-tracker.debian.org/tracker/pdns Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmo9f2oACgkQEMKTtsN8 TjY4bA//Uh7VFdhBsbe7A38N6uExOAgkCFu3Wj2HStdy7T3iJ/PDAwwd7MhX1Xb8 l27p5q2pY7o2HR+f9OkQoMr4rh3Mnqvs8wpqhJ32OCQ3uA52wtj5GMuZZTIFJ3Hp Ab80ztVbcDbdUDXCynuGsjnoFAGTioKgoB2s8mNJ463Y1dy4HBtuiacbnsINsCZA RClK3feG/3ZJ2zXqy0B8vpeKTWKsTVtrPH85cB8PkqjLR7F7dGSk6jJbwI7Vm0TG PGTS47MvMuH5++EtakLiigFk27EpmpmBuYvXSrMTkfNYWT4SFPaPFuVKQKWUE5pE TXAqsS8G2Ta/RANhm1Vlt1dxsXu2ZqoDkuJliMSl+1gCLsW48wabpmxG4wNrzoVY swbwXKl+Hk9Teou8iTQAPUyP5wAFrjOA604A2PyV9pFltQWkVt6Tp1z91YHoT/5G coiIz8vQfXd/6qQHP0VcJ7p1prAYk0tgh0g7psNOLSB3jtUt5oLmg+f406LL0/mW KjMmBtWnA5XBFhGcWO4OLWpHko5k0NtG/l6DFmLJ+CLqJXp9i4Bn7zMBwfILR4uh 65JbFs1sXo//HfLULUmjM+5BkVX3hXffwpsqI3OmjOy0cFc9WYqjChhfTgq9vJYV XCPF3sxQFhcG4UWB5oQ4MzJsnyD2lDSeKRJwB31wIWezZHrXSiA= =BpjS -----END PGP SIGNATURE----- Reply to: debian-security-announce@lists.debian.org Moritz Muehlenhoff (on-list) Moritz Muehlenhoff (off-list) Prev by Date: [SECURITY] [DSA 6367-1] dnsdist security update Next by Date: [SECURITY] [DSA 6369-1] pdns-recursor security update Previous by thread: [SECURITY] [DSA 6367-1] dnsdist security update Next by thread: [SECURITY] [DSA 6369-1] pdns-recursor security update Index(es): Date Thread