Home
MEDIUM: 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:LDefault status
unaffected
5.4.0 (semver) before 5.4.1
affected
5.3.0 (semver) before 5.3.6
affected
5.2.0 (semver) before 5.2.9
affected
Description
An attacker can send a web request that causes unlimited memory allocation in the internal web server, leading to a denial of service. The internal web server is disabled by default.
Problem types
Allocation of Resources Without Limits or Throttling
Product status
5.4.0 (semver) before 5.4.1
5.3.0 (semver) before 5.3.6
5.2.0 (semver) before 5.2.9
Credits
Ap4sh - Samy Medjahed and Ethicxz - Eliott Laurie Ap4sh / Ethicxz
References
docs.powerdns.com/...powerdns-advisory-powerdns-2026-03.html