DSA-6419-1 dnsdist - security update
A vulnerability was discovered in the dnsdist DNS loadbalancer, which may result in denial of service (increased memory and CPU usage) when processing a specially crafted DNS packet. https://security-tracker.debian.org/tracker/DSA-6419-1
CSIRTS triage
- What
- A specially crafted DNS packet causes increased memory and CPU usage in the DNS load balancer.
- Who is affected
- Deployments of dnsdist running vulnerable versions.
- Urgency
- Moderate; denial of service via resource exhaustion is possible but not actively exploited.
- Action
- Apply the security update from Debian (DSA-6419-1) or upgrade to the patched version from PowerDNS.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch dnsdist
Get an email when a new dnsdist advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://lists.debian.org/debian-security-announce/2026/msg00330.html
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-52682 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- medium[NEW] [medium] PowerDNS: Vulnerability Enables Denial of Servicecert-bund
- unknownDSA-6420-1 pdns - security updatedebian
- unknownDSA-6421-1 pdns-recursor - security updatedebian
More from Debian Security Advisories
- highDSA-6496-1 nginx - security update2026-09-12
- unknownDSA-6497-1 xorg-server - security update2026-09-12
- unknownDSA-6495-1 spip - security update2026-09-11
- unknownDSA-6494-1 kamailio - security update2026-09-11
- unknownDSA-6493-1 libevent - security update2026-09-11