Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-4392

Опубликовано: 19 фев. 2009
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.4

Описание

dnscache in Daniel J. Bernstein djbdns 1.05 does not prevent simultaneous identical outbound DNS queries, which makes it easier for remote attackers to spoof DNS responses, as demonstrated by a spoofed A record in the Additional section of a response to a Start of Authority (SOA) query.

РелизСтатусПримечание
artful

ignored

end of life
bionic

DNE

cosmic

DNE

dapper

DNE

devel

needs-triage

disco

DNE

eoan

DNE

esm-apps/jammy

needs-triage

esm-apps/noble

needs-triage

esm-apps/xenial

needed

Показывать по

EPSS

Процентиль: 70%
0.00636
Низкий

6.4 Medium

CVSS2

Связанные уязвимости

nvd
почти 17 лет назад

dnscache in Daniel J. Bernstein djbdns 1.05 does not prevent simultaneous identical outbound DNS queries, which makes it easier for remote attackers to spoof DNS responses, as demonstrated by a spoofed A record in the Additional section of a response to a Start of Authority (SOA) query.

debian
почти 17 лет назад

dnscache in Daniel J. Bernstein djbdns 1.05 does not prevent simultane ...

github
почти 4 года назад

dnscache in Daniel J. Bernstein djbdns 1.05 does not prevent simultaneous identical outbound DNS queries, which makes it easier for remote attackers to spoof DNS responses, as demonstrated by a spoofed A record in the Additional section of a response to a Start of Authority (SOA) query.

EPSS

Процентиль: 70%
0.00636
Низкий

6.4 Medium

CVSS2