[SECURITY] [DSA 5851-1] pdns-recursor security update
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- -------------------------------------------------------------------------
Debian Security Advisory DSA-5852-1 security@debian.org
https://www.debian.org/security/ Moritz Muehlenhoff
January 28, 2025 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : pdns-recursor
CVE ID : CVE-2024-25590
Toshifumi Sakaguchi discovered that too permissive parsing of some
resource record sets in the zone file parsing of PDNS Recursor could
result in denial of service.
For the stable distribution (bookworm), this problem has been fixed in
version 4.8.8-1+deb12u1.
We recommend that you upgrade your pdns-recursor packages.
For the detailed security status of pdns-recursor please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/pdns-recursor
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce@lists.debian.org
-----BEGIN PGP SIGNATURE-----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=PVYB
-----END PGP SIGNATURE-----
Reply to: