A Vulnerability has been found in PowerDNS Authoritative Server before versions 4.1.9, 4.0.8 allowing a remote, authorized master server to cause a high CPU load or even prevent any further updates to any slave zone by sending a large number of NOTIFY messages. Note that only servers configured as slaves are affected by this issue.
| Software | From | Fixed in |
|---|---|---|
| powerdns / authoritative | 4.1.0 | 4.1.0.x |
| powerdns / authoritative | 4.1.0 | 4.1.9 |
| powerdns / authoritative | 4.0.0 | 4.0.8 |
| opensuse / leap | 15.0 | 15.0.x |
| opensuse / leap | 15.1 | 15.1.x |
| opensuse / backports | sle-15-sp1 | sle-15-sp1.x |
| opensuse / backports | sle-15 | sle-15.x |