CVE-2025-30195: Powerdns Recursor

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

An attacker can publish a zone containing specific Resource Record Sets. Processing and caching results for these sets can lead to an illegal memory accesses and crash of the Recursor, causing a denial of service. The remedy is: upgrade to the patched 5.2.1 version. We would like to thank Volodymyr Ilyin for bringing this issue to our attention.

Affected products

Published 2025-04-07. Last modified 2026-06-17.