Vulnerabilities > CVE-2018-1046 - Out-of-bounds Write vulnerability in Powerdns Pdns

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
powerdns
CWE-787
critical
nessus

Summary

pdns before version 4.1.2 is vulnerable to a buffer overflow in dnsreplay. In the dnsreplay tool provided with PowerDNS Authoritative, replaying a specially crafted PCAP file can trigger a stack-based buffer overflow, leading to a crash and potentially arbitrary code execution. This buffer overflow only occurs when the -ecs-stamp option of dnsreplay is used.

Vulnerable Configurations

Part Description Count
Application
Powerdns
1

Common Weakness Enumeration (CWE)

Nessus

  • NASL familySuSE Local Security Checks
    NASL idOPENSUSE-2018-532.NASL
    descriptionThis update for pdns fixes the following issues : Security issues fixed : - CVE-2018-1046: Fix an issue with replaying a specially crafted PCAP file that can trigger a stack-based buffer overflow, leading to a crash and potentially arbitrary code execution (bsc#1092540).
    last seen2020-06-05
    modified2018-05-29
    plugin id110179
    published2018-05-29
    reporterThis script is Copyright (C) 2018-2020 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/110179
    titleopenSUSE Security Update : pdns (openSUSE-2018-532)
  • NASL familySuSE Local Security Checks
    NASL idOPENSUSE-2018-491.NASL
    descriptionThis update for pdns fixes the following issue : - CVE-2018-1046: An issue has been found in the dnsreplay tool provided with PowerDNS Authoritative, where replaying a specially crafted PCAP file can trigger a stack-based buffer overflow, leading to a crash and potentially arbitrary code execution. This buffer overflow only occurs when the -ecs-stamp option of dnsreplay is used. (boo#1092540)
    last seen2020-06-05
    modified2018-05-24
    plugin id110065
    published2018-05-24
    reporterThis script is Copyright (C) 2018-2020 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/110065
    titleopenSUSE Security Update : pdns (openSUSE-2018-491)
  • NASL familySuSE Local Security Checks
    NASL idOPENSUSE-2019-403.NASL
    descriptionThis update for pdns fixes the following issues : Security issues fixed : - CVE-2018-1046: Fix an issue with replaying a specially crafted PCAP file that can trigger a stack-based buffer overflow, leading to a crash and potentially arbitrary code execution (bsc#1092540).
    last seen2020-06-01
    modified2020-06-02
    plugin id123177
    published2019-03-27
    reporterThis script is Copyright (C) 2019-2020 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/123177
    titleopenSUSE Security Update : pdns (openSUSE-2019-403)