CVE-2016-7073
Last modified
CVE-2016-7073 is a medium-severity vulnerability rated 5.3/10 on the CVSS scale. An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 4.0.4, allowing an attacker in position of man-in-the-middle to alter the content of an AXFR because of insufficient validation of TSIG signatures. A missing check of the TSIG time and fudge values was found in AXFRRetriever, leading to a possible replay attack.. EPSS estimates a 1.23% chance of exploitation in the next 30 days.
Description
An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 4.0.4, allowing an attacker in position of man-in-the-middle to alter the content of an AXFR because of insufficient validation of TSIG signatures. A missing check of the TSIG time and fudge values was found in AXFRRetriever, leading to a possible replay attack.
Metrics
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Powerdns | Authoritative | < 3.4.11 |
| Powerdns | Authoritative | >= 4.0.0, < 4.0.2 |
| Powerdns | Recursor | < 3.7.4 |
| Powerdns | Recursor | >= 4.0.0, < 4.0.4 |
| Debian | Debian Linux | 8.0 |
References
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-7073Issue Tracking, Third Party Advisory
- https://www.debian.org/security/2017/dsa-3764Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-7073Issue Tracking, Third Party Advisory
- https://www.debian.org/security/2017/dsa-3764Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2016-7073?
How severe is CVE-2016-7073?
How do I fix CVE-2016-7073?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2016
- CVE-2016-7067Monit before version 5.20.0 is vulnerable to a cross site re…6.5
- CVE-2016-7068An issue has been found in PowerDNS before 3.4.11 and 4.0.2,…5.3
- CVE-2016-7069An issue has been found in dnsdist before 1.2.0 in the way E…5.9
- CVE-2016-7070A privilege escalation flaw was found in the Ansible Tower. …8
- CVE-2016-7071It was found that the CloudForms before 5.6.2.2, and 5.7.0.7…8.8
- CVE-2016-7072An issue has been found in PowerDNS Authoritative Server bef…5.3
- CVE-2016-7074An issue has been found in PowerDNS before 3.4.11 and 4.0.2,…5.3
- CVE-2016-7075It was found that Kubernetes as used by Openshift Enterprise…7.5
- CVE-2016-7076sudo before version 1.8.18p1 is vulnerable to a bypass in th…6.4
- CVE-2016-7077foreman before 1.14.0 is vulnerable to an information leak. …4.3
- CVE-2016-7078foreman before version 1.15.0 is vulnerable to an informatio…4.3
- CVE-2016-7079The graphic acceleration functions in VMware Tools 9.x and 1…
Are you affected by CVE-2016-7073?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
