← Back

CVE-2026-33611

nvd nist
Published: Apr 22, 2026Modified: Jun 17, 2026

JSON object

Loading...
4.9
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Exploitability: 1.2 / Impact: 3.6
Source: NVD

Description

An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data, which can in turn cause LMDB database corruption, if using the LMDB backend.

Affected (2)

1 product
Authoritative
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Powerdns
From 4.9.0 to 4.9.14
From 5.0.0 to 5.0.4

Timeline

No history available yet.