Nixpkgs Security Tracker

Login with GitHub

Details of issue NIXPKGS-2026-0012

NIXPKGS-2026-0012
published on 13 Jan 2026
updated 1 week, 1 day ago by @LeSuisse Activity log
  • Created automatic suggestion
  • @LeSuisse accepted as draft
  • @LeSuisse published on GitHub
Insufficient validation of incoming notifies over TCP can lead to a denial of service in Recursor

An attacker can trigger the removal of cached records by sending a NOTIFY query over TCP.

Affected products

pdns-recursor
  • <5.3.3
  • <5.2.7
  • <5.1.9

Matching in nixpkgs

Package maintainers: 1