[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2018-1046":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":26,"aliases":27,"duplicate_of":9,"upstream":28,"downstream":29,"duplicates":44,"related":45,"reserved_at":9,"published_at":50,"modified_at":51,"state":52,"summary":53,"references_raw":62,"kevs":72,"epss":73,"epss_history":76,"metrics":296,"affected":312},"CVE-2018-1046","pdns before version 4.1.2 is vulnerable to a buffer overflow in dnsreplay. In the dnsreplay tool provided with PowerDNS Authoritative, replaying a specially crafted PCAP file can trigger a stack-based buffer overflow, leading to a crash and potentially arbitrary code execution. This buffer overflow only occurs when the -ecs-stamp option of dnsreplay is used.",null,[11,20],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-787","Out-of-bounds Write","The product writes data past the end, or before the beginning, of the intended buffer.","weakness","Draft","Base","High",[],{"_key":21,"id":21,"name":22,"description":23,"type":15,"status":16,"abstraction":24,"likelihood_of_exploit":18,"capec":25},"CWE-121","Stack-based Buffer Overflow","A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).","Variant",[],[],[],[],[30,32,34,36,38,40,42],{"_key":31},"SUSE-SU-2018:1660-1",{"_key":33},"OPENSUSE-SU-2018:1462-1",{"_key":35},"UBUNTU-CVE-2018-1046",{"_key":37},"OPENSUSE-SU-2024:11156-1",{"_key":39},"MGASA-2018-0255",{"_key":41},"DEBIAN-CVE-2018-1046",{"_key":43},"USN-7203-1",[],[46,47,48,49],{"_key":31},{"_key":33},{"_key":37},{"_key":39},"2018-07-16T20:00:00.000Z","2024-08-05T03:44:11.842Z","Modified",{"cisa_kev":54,"cisa_ransomware":54,"cisa_vendor":9,"epss_severity":55,"epss_score":56,"severity":57,"severity_score":58,"severity_version":59,"severity_source":60,"severity_vector":61,"severity_status":52},false,"low",0.00003,"high",9.3,"v2.0","nvd","AV:N/AC:M/Au:N/C:C/I:C/A:C",[63],{"url":64,"sources":65,"tags":67},"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1046",[66,60],"cve.org",[68,69,70,71],"X Refsource CONFIRM","Issue Tracking","Patch","Third Party Advisory",[],{"date":74,"score":56,"percentile":75},"2026-06-04",0.00072,[77,81,83,86,88,90,93,95,98,101,103,105,108,110,112,116,119,121,124,126,129,131,133,135,137,140,143,145,147,150,153,156,159,162,164,167,170,173,176,179,182,185,188,190,192,194,197,200,202,205,208,210,212,214,216,218,220,222,224,226,228,230,233,235,238,240,242,244,246,248,250,252,254,256,258,260,262,264,266,268,270,272,274,276,278,281,284,287,290,293],{"date":78,"score":79,"percentile":80},"2025-11-04",0.00007,0.00415,{"date":82,"score":79,"percentile":80},"2025-11-05",{"date":84,"score":79,"percentile":85},"2025-11-06",0.00416,{"date":87,"score":79,"percentile":85},"2025-11-07",{"date":89,"score":79,"percentile":80},"2025-11-08",{"date":91,"score":79,"percentile":92},"2025-11-09",0.00414,{"date":94,"score":79,"percentile":92},"2025-11-10",{"date":96,"score":79,"percentile":97},"2025-11-11",0.00413,{"date":99,"score":79,"percentile":100},"2025-11-12",0.00409,{"date":102,"score":79,"percentile":100},"2025-11-13",{"date":104,"score":79,"percentile":100},"2025-11-14",{"date":106,"score":79,"percentile":107},"2025-11-15",0.0041,{"date":109,"score":79,"percentile":107},"2025-11-16",{"date":111,"score":79,"percentile":100},"2025-11-17",{"date":113,"score":114,"percentile":115},"2025-11-18",0.00002,0.00046,{"date":117,"score":114,"percentile":118},"2025-11-19",0.00047,{"date":120,"score":114,"percentile":118},"2025-11-20",{"date":122,"score":79,"percentile":123},"2025-11-21",0.00417,{"date":125,"score":79,"percentile":123},"2025-11-22",{"date":127,"score":79,"percentile":128},"2025-11-23",0.00418,{"date":130,"score":79,"percentile":128},"2025-11-24",{"date":132,"score":79,"percentile":123},"2025-11-25",{"date":134,"score":79,"percentile":85},"2025-11-26",{"date":136,"score":79,"percentile":85},"2025-11-27",{"date":138,"score":79,"percentile":139},"2025-11-28",0.0042,{"date":141,"score":79,"percentile":142},"2025-11-29",0.00423,{"date":144,"score":79,"percentile":142},"2025-11-30",{"date":146,"score":79,"percentile":139},"2025-12-01",{"date":148,"score":79,"percentile":149},"2025-12-02",0.00419,{"date":151,"score":79,"percentile":152},"2025-12-03",0.00422,{"date":154,"score":79,"percentile":155},"2025-12-04",0.00427,{"date":157,"score":79,"percentile":158},"2025-12-05",0.00429,{"date":160,"score":79,"percentile":161},"2025-12-06",0.00428,{"date":163,"score":79,"percentile":158},"2025-12-07",{"date":165,"score":79,"percentile":166},"2025-12-08",0.00434,{"date":168,"score":79,"percentile":169},"2025-12-09",0.00446,{"date":171,"score":79,"percentile":172},"2025-12-10",0.00447,{"date":174,"score":79,"percentile":175},"2025-12-11",0.00449,{"date":177,"score":79,"percentile":178},"2025-12-12",0.00453,{"date":180,"score":79,"percentile":181},"2025-12-13",0.00454,{"date":183,"score":79,"percentile":184},"2025-12-14",0.00452,{"date":186,"score":79,"percentile":187},"2025-12-15",0.0045,{"date":189,"score":79,"percentile":187},"2025-12-16",{"date":191,"score":79,"percentile":175},"2025-12-17",{"date":193,"score":79,"percentile":169},"2025-12-18",{"date":195,"score":79,"percentile":196},"2025-12-19",0.00445,{"date":198,"score":79,"percentile":199},"2025-12-20",0.00444,{"date":201,"score":79,"percentile":199},"2025-12-21",{"date":203,"score":79,"percentile":204},"2025-12-22",0.00448,{"date":206,"score":79,"percentile":207},"2025-12-23",0.00451,{"date":209,"score":79,"percentile":184},"2025-12-24",{"date":211,"score":79,"percentile":184},"2025-12-25",{"date":213,"score":79,"percentile":178},"2025-12-26",{"date":215,"score":79,"percentile":196},"2025-12-27",{"date":217,"score":79,"percentile":184},"2025-12-28",{"date":219,"score":79,"percentile":207},"2025-12-29",{"date":221,"score":79,"percentile":204},"2025-12-30",{"date":223,"score":79,"percentile":204},"2025-12-31",{"date":225,"score":79,"percentile":204},"2026-01-01",{"date":227,"score":79,"percentile":187},"2026-01-02",{"date":229,"score":79,"percentile":184},"2026-01-03",{"date":231,"score":79,"percentile":232},"2026-01-04",0.00443,{"date":234,"score":79,"percentile":199},"2026-01-05",{"date":236,"score":79,"percentile":237},"2026-01-06",0.00442,{"date":239,"score":79,"percentile":237},"2026-01-07",{"date":241,"score":79,"percentile":199},"2026-01-08",{"date":243,"score":79,"percentile":187},"2026-01-09",{"date":245,"score":79,"percentile":184},"2026-01-10",{"date":247,"score":79,"percentile":204},"2026-01-11",{"date":249,"score":79,"percentile":196},"2026-01-12",{"date":251,"score":79,"percentile":232},"2026-01-13",{"date":253,"score":79,"percentile":172},"2026-01-14",{"date":255,"score":79,"percentile":172},"2026-01-15",{"date":257,"score":79,"percentile":169},"2026-01-16",{"date":259,"score":79,"percentile":172},"2026-01-17",{"date":261,"score":79,"percentile":204},"2026-01-18",{"date":263,"score":79,"percentile":169},"2026-01-19",{"date":265,"score":79,"percentile":199},"2026-01-20",{"date":267,"score":79,"percentile":232},"2026-01-21",{"date":269,"score":79,"percentile":199},"2026-01-22",{"date":271,"score":79,"percentile":169},"2026-01-23",{"date":273,"score":79,"percentile":175},"2026-01-24",{"date":275,"score":79,"percentile":207},"2026-01-25",{"date":277,"score":79,"percentile":178},"2026-01-26",{"date":279,"score":79,"percentile":280},"2026-01-27",0.00458,{"date":282,"score":79,"percentile":283},"2026-01-28",0.0046,{"date":285,"score":79,"percentile":286},"2026-01-29",0.00463,{"date":288,"score":79,"percentile":289},"2026-01-30",0.00473,{"date":291,"score":79,"percentile":292},"2026-01-31",0.00477,{"date":294,"score":79,"percentile":295},"2026-02-01",0.0048,[297,303],{"source":66,"cvss_v2_0":9,"cvss_v3_0":298,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":4,"baseSeverity":299,"vectorString":300,"impactScore":301,"exploitabilityScore":302},"HIGH","CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",9.8,2.6,{"source":60,"cvss_v2_0":304,"cvss_v3_0":307,"cvss_v3_1":308,"cvss_v4_0":9},{"baseScore":58,"baseSeverity":9,"vectorString":61,"impactScore":305,"exploitabilityScore":306},10,8.6,{"baseScore":4,"baseSeverity":299,"vectorString":300,"impactScore":301,"exploitabilityScore":302},{"baseScore":309,"baseSeverity":299,"vectorString":310,"impactScore":301,"exploitabilityScore":311},7.8,"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",4.6,[313,324],{"ecosystem":9,"name":314,"vendor":315,"product":314,"cpe_part":316,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":317},"pdns","powerdns","a",[318],{"version":319,"is_range":320,"range_type":321,"version_start":9,"version_start_type":9,"version_end":322,"version_end_type":323,"fixed_in":9},"lt4.1.2",true,"cpe","4.1.2","excluding",{"ecosystem":9,"name":314,"vendor":325,"product":314,"cpe_part":316,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":326},"[unknown]",[327],{"version":328,"is_range":54,"range_type":66,"version_start":328,"version_start_type":329,"version_end":328,"version_end_type":329,"fixed_in":9},"pdns 4.1.2","including"]