CVE-2022-37428 Information

Description

PowerDNS Recursor up to and including 4.5.9 4.6.2 and 4.7.1 when protobuf logging is enabled has Improper Cleanup upon a Thrown Exception leading to a denial of service (daemon crash) via a DNS query that leads to an answer with specific properties.

Reference

https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2022-02.html https://docs.powerdns.com/recursor/lua-config/protobuf.html

Share on: