CVE-2012-1193: Medium severity powerdns vulnerability
The resolver in PowerDNS Recursor (aka pdnsrecursor) 3.3 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1193?
CVE-2012-1193 has a medium severity that can lead to cache poisoning and unauthorized domain resolution.
How do I fix CVE-2012-1193?
To fix CVE-2012-1193, upgrade PowerDNS Recursor to a version later than 3.3 that addresses this vulnerability.
What types of attacks can CVE-2012-1193 facilitate?
CVE-2012-1193 can facilitate ghost domain names attacks, allowing remote attackers to exploit the resolver's behavior.
Which versions of PowerDNS are affected by CVE-2012-1193?
PowerDNS Recursor version 3.3 is affected by CVE-2012-1193.
Is there a workaround for CVE-2012-1193 if I cannot update?
There are no official workarounds for CVE-2012-1193, so upgrading to a patched version is recommended.