Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-4392

Опубликовано: 19 фев. 2009
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

dnscache in Daniel J. Bernstein djbdns 1.05 does not prevent simultaneous identical outbound DNS queries, which makes it easier for remote attackers to spoof DNS responses, as demonstrated by a spoofed A record in the Additional section of a response to a Start of Authority (SOA) query.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:d.j.bernstein:djbdns:1.05:*:*:*:*:*:*:*

EPSS

Процентиль: 70%
0.00636
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-362

Связанные уязвимости

ubuntu
почти 17 лет назад

dnscache in Daniel J. Bernstein djbdns 1.05 does not prevent simultaneous identical outbound DNS queries, which makes it easier for remote attackers to spoof DNS responses, as demonstrated by a spoofed A record in the Additional section of a response to a Start of Authority (SOA) query.

debian
почти 17 лет назад

dnscache in Daniel J. Bernstein djbdns 1.05 does not prevent simultane ...

github
почти 4 года назад

dnscache in Daniel J. Bernstein djbdns 1.05 does not prevent simultaneous identical outbound DNS queries, which makes it easier for remote attackers to spoof DNS responses, as demonstrated by a spoofed A record in the Additional section of a response to a Start of Authority (SOA) query.

EPSS

Процентиль: 70%
0.00636
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-362