PT-2026-52388 · Powerdns+3 · Recursor+2

·

CVE-2026-40012

·

Published

2026-06-25

·

Updated

2026-06-25

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions The product name cannot be determined (affected versions not specified)
Description ECS zero scoped answers are incorrectly stored in the packet cache. This issue specifically affects configurations where ECS (EDNS Client Subnet), an extension to DNS that allows a recursive resolver to include the client's subnet in queries to authoritative servers, is enabled.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-40012

Affected Products

Recursor
Pdns
Pdns-Recursor