UBUNTU-CVE-2019-10163

See a problem?
Source
https://ubuntu.com/security/notices/UBUNTU-CVE-2019-10163
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-10163.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2019-10163
Related
Published
2019-07-30T23:15:00Z
Modified
2019-07-30T23:15:00Z
Severity
  • 4.3 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L CVSS Calculator
  • 4.3 (Medium) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L CVSS Calculator
Summary
[none]
Details

A Vulnerability has been found in PowerDNS Authoritative Server before versions 4.1.9, 4.0.8 allowing a remote, authorized master server to cause a high CPU load or even prevent any further updates to any slave zone by sending a large number of NOTIFY messages. Note that only servers configured as slaves are affected by this issue.

References

Affected packages

Ubuntu:Pro:16.04:LTS / pdns

Package

Name
pdns

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*

3.4.5-1build2
3.4.6-2
3.4.6-3
3.4.7-1
3.4.7-2

4.*

4.0.0~alpha1-1
4.0.0~alpha2-2
4.0.0~alpha2-3
4.0.0~alpha2-3build1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:18.04:LTS / pdns

Package

Name
pdns

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*

4.0.4-2
4.0.4-2build1
4.0.5-1
4.1.0-1
4.1.0-2
4.1.0-2build1
4.1.1-1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:20.04:LTS / pdns

Package

Name
pdns
Purl
pkg:deb/ubuntu/pdns@4.1.6-3build1?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.1.6-3build1

Ecosystem specific

{
    "availability": "No subscription required",
    "ubuntu_priority": "medium",
    "binaries": [
        {
            "pdns-backend-geoip": "4.1.6-3build1",
            "pdns-backend-pgsql": "4.1.6-3build1",
            "pdns-backend-pipe": "4.1.6-3build1",
            "pdns-backend-sqlite3-dbgsym": "4.1.6-3build1",
            "pdns-backend-opendbx-dbgsym": "4.1.6-3build1",
            "pdns-server": "4.1.6-3build1",
            "pdns-backend-odbc": "4.1.6-3build1",
            "pdns-backend-lua-dbgsym": "4.1.6-3build1",
            "pdns-server-dbgsym": "4.1.6-3build1",
            "pdns-backend-mysql-dbgsym": "4.1.6-3build1",
            "pdns-backend-opendbx": "4.1.6-3build1",
            "pdns-backend-sqlite3": "4.1.6-3build1",
            "pdns-backend-pipe-dbgsym": "4.1.6-3build1",
            "pdns-backend-pgsql-dbgsym": "4.1.6-3build1",
            "pdns-backend-remote": "4.1.6-3build1",
            "pdns-backend-tinydns-dbgsym": "4.1.6-3build1",
            "pdns-backend-ldap": "4.1.6-3build1",
            "pdns-backend-odbc-dbgsym": "4.1.6-3build1",
            "pdns-backend-bind-dbgsym": "4.1.6-3build1",
            "pdns-tools-dbgsym": "4.1.6-3build1",
            "pdns-backend-lua": "4.1.6-3build1",
            "pdns-backend-tinydns": "4.1.6-3build1",
            "pdns-backend-geoip-dbgsym": "4.1.6-3build1",
            "pdns-backend-mydns-dbgsym": "4.1.6-3build1",
            "pdns-backend-remote-dbgsym": "4.1.6-3build1",
            "pdns-backend-ldap-dbgsym": "4.1.6-3build1",
            "pdns-backend-mysql": "4.1.6-3build1",
            "pdns-backend-mydns": "4.1.6-3build1",
            "pdns-tools": "4.1.6-3build1",
            "pdns-backend-bind": "4.1.6-3build1"
        }
    ]
}