CVE-2026-0398Disclosure(powerdns / recursor)

LOWCVSS 5.3 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Crafted zones can lead to increased resource usage and crafted CNAME chains can lead to cache poisoning in Recursor.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-770

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • recursor

Threat summary

  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 4 classified signals
  • Peaked 2d ago at 2 mentions (2026-02-09); latest day: 1
  • 4 total mentions across 3 days

Affected systems

Vendors
Products
recursor

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-02-09: 2Mentions · 2026-02-10: 1Mentions · 2026-02-13: 1Technical Details · 2026-02-09: 2Technical Details · 2026-02-10: 102-0902-1002-13
Signal classification1 categories
Disclosure
4100.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-02-092
Disclosure2
2026-02-101
Disclosure1
2026-02-131
Disclosure1
Full discourse4 posts
  • 日本レジストリサービス(JPRS)@JPRS_official
    Disclosure

    【注意喚起】PowerDNS Recursorの脆弱性情報が公開されました(CVE-2026-24027、CVE-2026-0398) https://jprs.jp/tech/security/2026-02-13-powerdns-recursor.html

    Post summary

    PowerDNS Recursor vulnerability details (CVE-2026-24027, CVE-2026-0398) have been publicly disclosed via a Japanese security advisory, but the text provides no further information on exploitation, mitigation, or technical specifics.

    050101743
    1.3K followersView on X
  • Open Source Security mailing list@oss_security
    Disclosure

    PowerDNS Security Advisory 2026-01: Crafted zones can lead to increased resource usage in Recursor https://www.openwall.com/lists/oss-security/2026/02/10/2 CVE-2026-24027: DoS through increased incoming network traffic CVE-2026-0398: DoS through large memory usage

    Post summary

    PowerDNS discloses two DoS CVEs (CVE‑2026‑24027 and CVE‑2026‑0398) caused by crafted zones leading to excessive resource usage, with no exploits or patches mentioned.

    10060703
    4.4K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-0398 Crafted zones can lead to increased resource usage and crafted CNAME chains can lead to cache poisoning in Recursor. https://www.cve.org/CVERecord?id=CVE-2026-0398

    Post summary

    The text announces CVE‑2026‑0398, detailing how crafted zones cause resource abuse and crafted CNAME chains can result in cache poisoning in Recursor.

    00020534
    56.5K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-0398 Resource Exhaustion and Cache Poisoning in DNS Recursor via Crafte... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-0398 Customizable Vulnerability Alerts: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=4

    Post summary

    The brief notice announces CVE-2026-0398, identifying resource exhaustion and cache poisoning in a DNS recursor, but provides no PoC, exploit, or patch details.

    0000051
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apppowerdnsrecursor---

Explore more