Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-3602

Опубликовано: 13 окт. 2009
Источник: debian
EPSS Низкий

Описание

Unbound before 1.3.4 does not properly verify signatures for NSEC3 records, which allows remote attackers to cause secure delegations to be downgraded via DNS spoofing or other DNS-related attacks in conjunction with crafted delegation responses.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
unboundfixed1.3.4-1package

Примечания

  • http://unbound.net/pipermail/unbound-users/2009-October/000852.html

EPSS

Процентиль: 82%
0.01644
Низкий

Связанные уязвимости

ubuntu
около 16 лет назад

Unbound before 1.3.4 does not properly verify signatures for NSEC3 records, which allows remote attackers to cause secure delegations to be downgraded via DNS spoofing or other DNS-related attacks in conjunction with crafted delegation responses.

nvd
около 16 лет назад

Unbound before 1.3.4 does not properly verify signatures for NSEC3 records, which allows remote attackers to cause secure delegations to be downgraded via DNS spoofing or other DNS-related attacks in conjunction with crafted delegation responses.

github
больше 3 лет назад

Unbound before 1.3.4 does not properly verify signatures for NSEC3 records, which allows remote attackers to cause secure delegations to be downgraded via DNS spoofing or other DNS-related attacks in conjunction with crafted delegation responses.

EPSS

Процентиль: 82%
0.01644
Низкий