CVE-2026-33260
גבוהה 7.5
תיאור (מקור, אנגלית)
An attacker can send a web request that causes unlimited memory allocation in the internal web server, leading to a denial of service. The internal web server is disabled by default.
מדדים
- CVSS 3.1
-
7.5 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H - EPSS — סבירות ניצול
- 1% (אחוזון 100) נכון ל-25/9/2026
- CWE
- CWE-770
מוצרים מושפעים
powerdns: authoritative; powerdns: dnsdist; powerdns: recursor
קישורים
- https://docs.powerdns.com/authoritative/security-advisories/powerdns-advisory-… Vendor Advisory
- https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-power… Broken LinkVendor Advisory
- https://www.dnsdist.org/security-advisories/powerdns-advisory-for-dnsdist-2026… Vendor Advisory