CVE-2012-1193: Powerdns Recursor

Medium severity, CVSS 6.4. EPSS: 5.6% chance of exploitation in the next 30 days.

The resolver in PowerDNS Recursor (aka pdns_recursor) 3.3 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.

Affected products

  • Powerdns Powerdns Recursor: version 3.3 only

Published 2012-02-17. Last modified 2026-06-16.