CVE-2025-59029

An attacker can trigger an assertion failure by requesting crafted DNS records, waiting for them to be inserted into the records cache, then send a query with qtype set to ANY.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:powerdns:recursor:5.3.0:-:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:5.3.1:*:*:*:*:*:*:*

History

19 Feb 2026, 17:13

Type Values Removed Values Added
First Time Powerdns
Powerdns recursor
CPE cpe:2.3:a:powerdns:recursor:5.3.1:*:*:*:*:*:*:*
cpe:2.3:a:powerdns:recursor:5.3.0:-:*:*:*:*:*:*
References () https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2025-07.html - () https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2025-07.html - Vendor Advisory

09 Dec 2025, 16:17

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-09 16:17

Updated : 2026-02-19 17:13


NVD link : CVE-2025-59029

Mitre link : CVE-2025-59029

CVE.ORG link : CVE-2025-59029


JSON object : View

Products Affected

powerdns

  • recursor
CWE
CWE-617

Reachable Assertion