CVE-2018-16855: Powerdns Recursor
High severity, CVSS 7.5. EPSS: 58.6% chance of exploitation in the next 30 days.
An issue has been found in PowerDNS Recursor before version 4.1.8 where a remote attacker sending a DNS query can trigger an out-of-bounds memory read while computing the hash of the query for a packet cache lookup, possibly leading to a crash.
Affected products
- Powerdns Recursor: before 4.1.8 (fixed in 4.1.8)
Published 2018-12-03. Last modified 2026-06-17.