CVE-2024-25583: Powerdns

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

A crafted response from an upstream server the recursor has been configured to forward-recurse to can cause a Denial of Service in the Recursor. The default configuration of the Recursor does not use recursive forwarding and is not affected.

Affected products

  • Powerdns Powerdns: version 4.8.7 only; version 4.9.4 only; version 5.0.3 only
  • Powerdns Recursor: version 4.8.7 only; version 4.9.4 only; version 5.0.3 only

Published 2024-04-25. Last modified 2026-06-17.