Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-1192

Опубликовано: 17 фев. 2012
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

The resolver in Unbound before 1.4.11 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:unbound:unbound:*:*:*:*:*:*:*:*
Версия до 1.4.10 (включая)
cpe:2.3:a:unbound:unbound:0.0:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.1:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.2:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.3:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.4:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.5:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.6:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.7:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.7.1:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.7.2:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.8:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.9:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.10:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:0.11:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.1.0:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.2.0:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.2.1:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.3.0:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.3.1:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.3.2:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.3.3:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.3.4:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.4.0:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.4.3:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.4.4:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.4.5:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.4.6:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.4.7:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.4.8:*:*:*:*:*:*:*
cpe:2.3:a:unbound:unbound:1.4.9:*:*:*:*:*:*:*

EPSS

Процентиль: 70%
0.00627
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
почти 14 лет назад

The resolver in Unbound before 1.4.11 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.

debian
почти 14 лет назад

The resolver in Unbound before 1.4.11 overwrites cached server names a ...

github
больше 3 лет назад

The resolver in Unbound before 1.4.11 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.

EPSS

Процентиль: 70%
0.00627
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other