[Git][security-tracker-team/security-tracker][master] Update information for CVE-2024-25583/pdns-recursor

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Apr 25 22:24:00 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
73a17223 by Salvatore Bonaccorso at 2024-04-25T22:50:18+02:00
Update information for CVE-2024-25583/pdns-recursor

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -441,7 +441,12 @@ CVE-2023-32127 (Missing Authorization vulnerability in Daniel Powney Multi Ratin
 CVE-2024-25583 (A crafted response from an upstream server the recursor has been confi ...)
 	{DSA-5674-1}
 	- pdns-recursor 4.9.5-1 (bug #1069762)
+	[bullseye] - pdns-recursor <not-affected> (Vulnerable code not present)
 	NOTE: https://www.openwall.com/lists/oss-security/2024/04/24/1
+	NOTE: Introduced by: https://github.com/PowerDNS/pdns/commit/3f427fc636282792374e2eb754621f0520e52402 (rec-4.9.4)
+	NOTE: Fixed by: https://github.com/PowerDNS/pdns/commit/3d16f2f49c22326e5a72f074c2a1f1b45769cb3f (rec-4.9.5)
+	NOTE: Introduced by: https://github.com/PowerDNS/pdns/commit/c090cc8b9198a9ee9155486894505a86878e30ee (rec-4.8.7)
+	NOTE: Fixed by: https://github.com/PowerDNS/pdns/commit/e1247da968077ee7c58fa41447057ee2a2b09fc9 (rec-4.8.8)
 CVE-2024-3154
 	- cri-o <itp> (bug #979702)
 CVE-2024-30171



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/73a172230307a957547d7f911ba6e42163b228a2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/73a172230307a957547d7f911ba6e42163b228a2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240425/5b17d062/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list