CVE-2014-7210: Debian Linux

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

pdns specific as packaged in Debian in version before 3.3.1-1 creates a too privileged MySQL user. It was discovered that the maintainer scripts of pdns-backend-mysql grant too wide database permissions for the pdns user. Other backends are not affected.

Affected products

  • Debian Debian Linux: version 7.0 only
  • Debian Pdns: before 3.3.1-1 (fixed in 3.3.1-1)

Published 2025-06-26. Last modified 2026-06-17.