Resource management error in PowerDNS Recursor - CVE-2025-59029
Published: December 8, 2025
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper management of internal resources in cache management when handling DNS queries with with qtype ANY. A remote attacker can send specially crafted request to the DNS server and perform a denial of service (DoS) attack.
Affected software
Fedora
pdns-recursor
How to mitigate CVE-2025-59029
pdns-recursor - addressed in versions 5.2.8-1.fc42, 5.2.8-1.fc43, 5.2.11-1.fc43, 5.4.3-1.el10_2, 5.4.3-1.el10_3, 5.4.3-1.fc44