First published: Mon Jul 16 2018(Updated: )
Last updated 14 January 2025
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/pdns | 4.4.1-1 4.7.3-2 4.9.3-1 | |
PowerDNS | <4.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1046 is a vulnerability in pdns before version 4.1.2 that allows for a buffer overflow in dnsreplay.
CVE-2018-1046 can lead to a stack-based buffer overflow in the dnsreplay tool provided with PowerDNS, resulting in a crash and potentially arbitrary code execution.
Software versions of PowerDNS (pdns) up to but excluding version 4.1.2 are affected by CVE-2018-1046.
CVE-2018-1046 has a severity rating of 7.8 (Critical).
To fix CVE-2018-1046, upgrade PowerDNS (pdns) to version 4.1.2 or later.