CVE-2009-4009: Buffer Overflow
Buffer overflow in PowerDNS Recursor before 3.1.7.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via crafted packets.
Other sources
CVE-2009-4009, CVE-2009-4010 This Wednesday the release of the PowerDNS Recursor 3.1.7.2 will be made public, which fixes two important security issues, one of which is remotely exploitable. Given the critical nature of these vulnerabilities, we are trying to keep details confidential for a few more days. Summary ------- The short version: please contact me off-list if you distribute the PowerDNS Recursor (any version), and if you want to gain early access to version 3.1.7.2 and associated release notes. Details ------- The two security issues have been discovered by two parties which we cannot yet publicly mention or thank, but they deserve full credit and gratitude for their discoveries. Two CVE numbers have been requested, they will be communicated ASAP. One issue is remotely exploitable, and there are no configuration countermeasures. The other allows a (skilled) attacker to spoof domain data for domain names he does not own. The first issue is at least a DoS, but in all likelihood can be expanded into a full compromise ('rooted'). The release that will be made public is already available for distributors. Other good news is that it is already serving over a million ISP customers, with no apparent problems. Contact me off-list for quick access to the new PowerDNS Recursor code, patch & release notes. If you need any kind of assistance in doing a smooth upgrade, also do not hesitate to contact me.
— Red Hat
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-4009?
CVE-2009-4009 is classified as a critical vulnerability that can lead to remote code execution.
How do I fix CVE-2009-4009?
To remedy CVE-2009-4009, upgrade to PowerDNS Recursor version 3.1.7.2 or later.
What versions of PowerDNS are affected by CVE-2009-4009?
PowerDNS Recursor versions up to 3.1.7.1 are affected by CVE-2009-4009.
Is CVE-2009-4009 related to other vulnerabilities?
Yes, CVE-2009-4009 is associated with CVE-2009-4010 as part of a security release.
What is the impact of CVE-2009-4009 if exploited?
Exploitation of CVE-2009-4009 can allow an attacker to execute arbitrary code on the affected system.