Integer overflow in PowerDNS Authoritative - CVE-2026-33611
Published: April 22, 2026
PowerDNS Authoritative
Detailed vulnerability description
The vulnerability allows a remote user to corrupt data and cause a denial of service.
The vulnerability exists due to integer overflow in HTTPS and SVCB record handling when processing crafted REST API requests. A remote privileged user can send a crafted REST API request to corrupt data and cause a denial of service.
Only systems using the LMDB backend are vulnerable to database corruption.