CVE-2006-2069: Medium severity powerdns powerdns vulnerability
Published Apr 27, 2006
·Updated
The recursor in PowerDNS before 3.0.1 allows remote attackers to cause a denial of service (application crash) via malformed EDNS0 packets.
Affected Software
1 affected component
PowerDNS DNSDist=3.0
Remediation
Patch Available
Event History
Apr 27, 2006
CVE Published
01:34 PM
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-2069?
CVE-2006-2069 is classified as a denial of service vulnerability that can cause an application crash.
2
How do I fix CVE-2006-2069?
To mitigate CVE-2006-2069, upgrade PowerDNS to version 3.0.1 or later which includes the necessary security fixes.
3
Which versions of PowerDNS are affected by CVE-2006-2069?
PowerDNS versions prior to 3.0.1 are affected by CVE-2006-2069.
4
What types of attacks does CVE-2006-2069 enable?
CVE-2006-2069 allows remote attackers to perform denial of service attacks using malformed EDNS0 packets.
5
Is there a workaround for CVE-2006-2069?
The best course of action for CVE-2006-2069 is to apply the available upgrade to a patched version rather than relying on a workaround.