oss-sec mailing list archives

PowerDNS Security Advisory 2026-07: Insufficient input validation of internal web server


From: Miod Vallat <miod.vallat () powerdns com>
Date: Thu, 25 Jun 2026 11:23:02 +0200

Today, we are releasing three new versions of the PowerDNS
Authoritative Server. These 4.9.16, 5.0.6 and 5.1.2 versions provide
fixes for the following PowerDNS Security Advisory:
  * [1]PowerDNS Security Advisory 2026-07: Insufficient input
    validation of internal web server

Please make sure to read the [2]Upgrade Notes before upgrading.

The tarballs ([3]4.9.16, [4]5.0.6), [5]5.1.2) and their signatures
([6]4.9.16, [7]5.0.6), [8]5.1.2) are available at
[9]downloads.powerdns.com. Packages for various distributions are
available from [10]repo.powerdns.com.

Please send us all feedback and issues you might have via the
[11]mailing list, or in case of a bug, via [12]GitHub.

References

1. https://doc.powerdns.com/authoritative/security-advisories/powerdns-advisory-2026-07.html
2. https://doc.powerdns.com/authoritative/upgrading.html
3. https://downloads.powerdns.com/releases/pdns-4.9.16.tar.bz2
4. https://downloads.powerdns.com/releases/pdns-5.0.6.tar.bz2
5. https://downloads.powerdns.com/releases/pdns-5.1.2.tar.bz2
6. https://downloads.powerdns.com/releases/pdns-4.9.16.tar.bz2.sig
7. https://downloads.powerdns.com/releases/pdns-5.0.6.tar.bz2.sig
8. https://downloads.powerdns.com/releases/pdns-5.1.2.tar.bz2.sig
9. https://downloads.powerdns.com/releases/
10. https://repo.powerdns.com/
11. https://mailman.powerdns.com/mailman/listinfo/pdns-users
12. https://github.com/PowerDNS/pdns/issues/new/choose


Current thread: