Vulnerability Bulletins

DSA-3763 pdns-recursor - security update

   
Affected software Debian
 
Florian Heinz and Martin Kluge reported that pdns-recursor, a recursiveDNS server, parses all records present in a query regardless of whetherthey are needed or even legitimate, allowing a remote, unauthenticatedattacker to cause an abnormal CPU usage load on the pdns server,resulting in a partial denial of service if the system becomesoverloaded.

More info:

https://www.debian.org/security/2017/dsa-3763