Index: vuln.xml =================================================================== --- vuln.xml (revision 486082) +++ vuln.xml (working copy) @@ -58,6 +58,37 @@ * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + powerdns-recursor -- Crafted query can cause a denial of service + + + powerdns-recursor + 4.1.8 + + + + +

powerdns Team reports:

+
+

CVE-2018-16855: An issue has been found in PowerDNS Recursor where a remote + attacker sending a DNS query can trigger an out-of-bounds memory read while + computing the hash of the query for a packet cache lookup, possibly leading to a + crash. When the PowerDNS Recursor is run inside a supervisor like supervisord or + systemd, a crash will lead to an automatic restart, limiting the impact to a + somewhat degraded service.

+
+ +
+ + https://doc.powerdns.com/recursor/changelog/4.1.html + CVE-2018-16855 + + + 2018-11-26 + 2018-11-28 + +
+ samba -- multiple vulnerabilities