DSA-6077-1 pdns-recursor - security update
⚠️ Importante
https://security-tracker.debian.org/tracker/DSA-6077-1
Debian
2025-12-10 00:00 UTC · 2025-12-09 21:00 -03
https://security-tracker.debian.org/tracker/DSA-6077-1
https://security-tracker.debian.org/tracker/DSA-6078-1
https://security-tracker.debian.org/tracker/DSA-6079-1
Jeppe Bonde Weikop discovered that Netty incorrectly parsed HTTP messages. When Netty is used with certain reverse proxies, a remote attacker could possibly use this issue to perform HTTP request smuggling attacks. (CVE-2025-58056) Jonas …
It was discovered that the subsetting module of fontTools was vulnerable to an XML External Entity (XEE) attack. An unauthenticated remote attacker could possibly use this issue to include arbitrary files from the file system or make web r…