openwrt ▾
›
openwrt-25.12 ▾
›
vulnerability
›
CVE-2026-33600
Component Overview
Vulnerability Overview
Name
CVE-2026-33600
Source
NVD (
link
)
Debian (
link
)
Description
An RPZ sent by a malicious authoritative server can result in a null pointer dereference, caused by a missing consistency check and leading to a denial of service.
CWEs
CWE-476
Published Date
Apr 22, 2026
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-powerdns-2026-03.html
Broken Link
Analysis
#
Affected Component
Analysis
pdns-recursor
Exploitable
Vulnerability Ratings
#
4.4
CVSSv31
4.9
CVSSv31
NaN
other
Others affected component
#
Name
Project
Project Version
Version
Status
pdns-recursor
openwrt
master
5.2.5-r1
Exploitable