CNNVD-202506-3360 Information

CNNVD ID

CNNVD-202506-3360

CVE-2014-7210

  • CNNVD Published: 2025-06-26

Description (Chinese)

PowerDNS是PowerDNS公司的一款开源DNS服务器。 PowerDNS在Win32下使用 Access的mdb文件记录DNS信息,而在Linux/Unix下则使用MySQL来记录DNS信息。无论是mdb亦或MySQL,备份是非常方便的事情。 PowerDNS 3.3.1-1之前版本存在安全漏洞,该漏洞源于MySQL用户权限过高。

Description (English)

PowerDNS is an open source DNS server for PowerDNS. PowerDNS records DNS information under Win32 using Access’s mdb file and MySQL under Linux/Unix. Whether mdb or MySQL, backup is a very convenient thing. There was a security loophole in the previous version of PowerDNS 3.3.1 resulting from the excessive user privileges of MySQL.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

PowerDNS

Published

2025-06-26

Last Modified

2026-02-24

References

https://lists.debian.org/debian-lts-announce/2016/05/msg00046.html https://salsa.debian.org/debian/pdns/-/commit/f0de6b3583039bb63344fbd5eb246939264d7b05

Patch

https://downloads.powerdns.com/releases/

Share on: