First published: Mon Apr 07 2025(Updated: )
An attacker can publish a zone containing specific Resource Record Sets. Processing and caching results for these sets can lead to an illegal memory accesses and crash of the Recursor, causing a denial of service. The remedy is: upgrade to the patched 5.2.1 version. We would like to thank Volodymyr Ilyin for bringing this issue to our attention.
Credit: security@open-xchange.com
Affected Software | Affected Version | How to fix |
---|---|---|
PowerDNS | <5.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-30195 has been classified as a denial of service vulnerability that can lead to crashes in the PowerDNS Recursor.
To fix CVE-2025-30195, upgrade to the patched version 5.2.1 of PowerDNS Recursor.
CVE-2025-30195 is caused by an attacker publishing a zone containing specific Resource Record Sets that lead to illegal memory accesses.
Symptoms of CVE-2025-30195 include crashes of the Recursor, resulting in denial of service.
Versions of PowerDNS Recursor prior to 5.2.1 are affected by CVE-2025-30195.