Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-1447

Опубликовано: 08 июл. 2008
Источник: debian
EPSS Высокий

Описание

The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to spoof DNS traffic via a birthday attack that uses in-bailiwick referrals to conduct cache poisoning against recursive resolvers, related to insufficient randomness of DNS transaction IDs and source ports, aka "DNS Insufficient Socket Entropy Vulnerability" or "the Kaminsky bug."

Пакеты

ПакетСтатусВерсия исправленияРелизТип
bind9fixed1:9.5.0.dfsg-5package
dnsmasqfixed2.43-1package
refpolicyfixed2:0.0.20080702-1package
pdnsdfixed1.2.6-par-11package
python-dnsfixed2.3.1-5package
dnspythonfixed1.7.1-1package
adnsfixed1.4-2package
udnsfixed0.2-1package
libnet-dns-perlfixed0.63-2package
ruby1.9fixed1.9.0.2-6package

Примечания

  • glibc stub resolver relies on source port randomisation in kernel

  • Just a stub resolver Linux kernel provides source port randomisation

  • adns is not suitable to use with untrusted responses, documented in README.Debian

  • Source port randomization from Lenny kernel should provide sufficient protection

  • since this is just a Perl nodule for DNS queries and not a high-profile server app like

  • Bind, it's unlikely that a home-grown fix will provide an implementation of higher

  • cryptographical quality. Marking the version from Lenny as fixed, since Lenny includes

  • a kernel which provides source port randomization

  • Unbound, djbdns, pdnsd and PowerDNS are affected by the underlying protocol issue, but

  • already use source port randomization.

  • Marking non-caching stub resolvers as low since these really should be fixed,

  • but are much less vulnerable than a caching server.

EPSS

Процентиль: 99%
0.87602
Высокий

Связанные уязвимости

CVSS3: 6.8
ubuntu
почти 17 лет назад

The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to spoof DNS traffic via a birthday attack that uses in-bailiwick referrals to conduct cache poisoning against recursive resolvers, related to insufficient randomness of DNS transaction IDs and source ports, aka "DNS Insufficient Socket Entropy Vulnerability" or "the Kaminsky bug."

redhat
почти 17 лет назад

The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to spoof DNS traffic via a birthday attack that uses in-bailiwick referrals to conduct cache poisoning against recursive resolvers, related to insufficient randomness of DNS transaction IDs and source ports, aka "DNS Insufficient Socket Entropy Vulnerability" or "the Kaminsky bug."

CVSS3: 6.8
nvd
почти 17 лет назад

The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to spoof DNS traffic via a birthday attack that uses in-bailiwick referrals to conduct cache poisoning against recursive resolvers, related to insufficient randomness of DNS transaction IDs and source ports, aka "DNS Insufficient Socket Entropy Vulnerability" or "the Kaminsky bug."

CVSS3: 6.8
github
около 3 лет назад

The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to spoof DNS traffic via a birthday attack that uses in-bailiwick referrals to conduct cache poisoning against recursive resolvers, related to insufficient randomness of DNS transaction IDs and source ports, aka "DNS Insufficient Socket Entropy Vulnerability" or "the Kaminsky bug."

oracle-oval
почти 17 лет назад

ELSA-2008-0789: dnsmasq security update (MODERATE)

EPSS

Процентиль: 99%
0.87602
Высокий