Denial of Service Vulnerability in PowerDNS Recursor
CVE-2026-33601
4.4MEDIUM
What is CVE-2026-33601?
A vulnerability in the zoneToCache function of PowerDNS Recursor allows an attacker to exploit interactions with a malicious authoritative server. This flaw arises from a missing consistency check, which can trigger a null pointer dereference. Successful exploitation results in a denial of service, potentially disrupting DNS resolutions and impacting services relying on PowerDNS.
Affected Version(s)
Recursor 5.4.0 < 5.4.1
Recursor 5.3.0 < 5.3.6
Recursor 5.2.0 < 5.2.9
