Products
UNKNOWN
Source
security@open-xchange.com
Tags
CVE-2024-25583 details
Published : April 25, 2024, 10:15 a.m.
Last Modified : April 25, 2024, 1:18 p.m.
Last Modified : April 25, 2024, 1:18 p.m.
Description
A crafted response from an upstream server the recursor has been configured to forward-recurse to can cause a Denial of Service in the Recursor. The default configuration of the Recursor does not use recursive forwarding and is not affected.
CVSS Score
1 | 2 | 3 | 4 | 5 | 6 | 7.5 | 8 | 9 | 10 |
---|
Weakness
Weakness | Name | Description |
---|
CVSS Data
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Base Score
7.5
Exploitability Score
Impact Score
Base Severity
HIGH
Vector String : CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
References
URL | Source |
---|---|
https://doc.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-02.html | security@open-xchange.com |
This website uses the NVD API, but is not approved or certified by it.