CVE-2025-30187 - Denial of service via crafted DoH exchange in PowerDNS DNSdist
CVE ID : CVE-2025-30187
Published : Sept. 18, 2025, 10:15 a.m. | 3 hours, 28 minutes ago
Description : In some circumstances, when DNSdist is configured to use the nghttp2 library to process incoming DNS over HTTPS queries, an attacker might be able to cause a denial of service by crafting a DoH exchange that triggers an unbounded I/O read loop, causing an unexpected consumption of CPU resources.
Severity: 3.7 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Sept. 18, 2025, 10:15 a.m. | 3 hours, 28 minutes ago
Description : In some circumstances, when DNSdist is configured to use the nghttp2 library to process incoming DNS over HTTPS queries, an attacker might be able to cause a denial of service by crafting a DoH exchange that triggers an unbounded I/O read loop, causing an unexpected consumption of CPU resources.
Severity: 3.7 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...