https://seclists.org/oss-sec/2026/q3/456: PowerDNS Security Advisory 2026-11 for PowerDNS Authoritative Server, cursor and dnsdist: A crafted DNS packet can cause incased memory and CPU consumption
Published Aug 6, 2026
·Updated
Affected Software
3 affected components
PowerDNS PowerDNS Authoritative Server=4.9.17, =5.0.7, =5.1.4
PowerDNS recursor=5.2.13, =5.3.10, =5.4.5
dnsdist=1.9.16, =2.0.8, =2.1.1
Frequently Asked Questions
1
What is the severity of PowerDNS Security Advisory 2026-11?
The severity of PowerDNS Security Advisory 2026-11 is high due to the potential for crafted DNS packets to cause increased memory and CPU consumption.
2
How do I fix PowerDNS Security Advisory 2026-11?
To fix PowerDNS Security Advisory 2026-11, upgrade to the patched versions: PowerDNS Authoritative Server 4.9.17, 5.0.7, 5.1.4, Recursor 5.2.13, 5.3.10, 5.4.5, or dnsdist 1.9.16, 2.0.8, 2.1.1.
3
What products are affected by PowerDNS Security Advisory 2026-11?
PowerDNS Security Advisory 2026-11 affects PowerDNS Authoritative Server, PowerDNS Recursor, and dnsdist.
4
What vulnerabilities does PowerDNS Security Advisory 2026-11 address?
PowerDNS Security Advisory 2026-11 addresses a vulnerability that allows crafted DNS packets to lead to resource exhaustion.
5
When was PowerDNS Security Advisory 2026-11 published?
PowerDNS Security Advisory 2026-11 was published on August 6, 2026.