CVE-2008-5277: Medium severity powerdns dnsdist vulnerability
PowerDNS before 2.9.21.2 allows remote attackers to cause a denial of service (daemon crash) via a CH HINFO query.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5277?
CVE-2008-5277 has been classified as a medium severity vulnerability due to its potential to cause a denial of service by crashing the PowerDNS daemon.
How do I fix CVE-2008-5277?
To mitigate CVE-2008-5277, upgrade PowerDNS to version 2.9.21.2 or later, which addresses this vulnerability.
What versions of PowerDNS are affected by CVE-2008-5277?
CVE-2008-5277 affects PowerDNS versions prior to 2.9.21.2, including all versions of 2.9 and earlier, specifically versions 1.99.1 to 2.9.17.
Can CVE-2008-5277 be exploited remotely?
Yes, CVE-2008-5277 can be exploited remotely through specially crafted CH HINFO DNS queries that cause the PowerDNS daemon to crash.
What is the impact of CVE-2008-5277 on systems running PowerDNS?
The impact of CVE-2008-5277 is a denial of service, resulting in the PowerDNS service being temporarily unavailable due to daemon crashes.