Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2017-15090

больше 8 лет назад

An issue has been found in the DNSSEC validation component of PowerDNS Recursor from 4.0.0 and up to and including 4.0.6, where the signatures might have been accepted as valid even if the signed data was not in bailiwick of the DNSKEY used to sign it. This allows an attacker in position of man-in-the-middle to alter the content of records by issuing a valid signature for the crafted records.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2017-15090

больше 8 лет назад

An issue has been found in the DNSSEC validation component of PowerDNS Recursor from 4.0.0 and up to and including 4.0.6, where the signatures might have been accepted as valid even if the signed data was not in bailiwick of the DNSKEY used to sign it. This allows an attacker in position of man-in-the-middle to alter the content of records by issuing a valid signature for the crafted records.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2017-15090

больше 8 лет назад

An issue has been found in the DNSSEC validation component of PowerDNS ...

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-pr86-5p67-45rx

больше 4 лет назад

An issue has been found in the DNSSEC validation component of PowerDNS Recursor from 4.0.0 and up to and including 4.0.6, where the signatures might have been accepted as valid even if the signed data was not in bailiwick of the DNSKEY used to sign it. This allows an attacker in position of man-in-the-middle to alter the content of records by issuing a valid signature for the crafted records.

CVSS3: 5.9
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2017:3218-1

почти 9 лет назад

Security update for pdns-recursor

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-15090

An issue has been found in the DNSSEC validation component of PowerDNS Recursor from 4.0.0 and up to and including 4.0.6, where the signatures might have been accepted as valid even if the signed data was not in bailiwick of the DNSKEY used to sign it. This allows an attacker in position of man-in-the-middle to alter the content of records by issuing a valid signature for the crafted records.

CVSS3: 5.9
1%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-15090

An issue has been found in the DNSSEC validation component of PowerDNS Recursor from 4.0.0 and up to and including 4.0.6, where the signatures might have been accepted as valid even if the signed data was not in bailiwick of the DNSKEY used to sign it. This allows an attacker in position of man-in-the-middle to alter the content of records by issuing a valid signature for the crafted records.

CVSS3: 5.9
1%
Низкий
больше 8 лет назад
debian логотип
CVE-2017-15090

An issue has been found in the DNSSEC validation component of PowerDNS ...

CVSS3: 5.9
1%
Низкий
больше 8 лет назад
github логотип
GHSA-pr86-5p67-45rx

An issue has been found in the DNSSEC validation component of PowerDNS Recursor from 4.0.0 and up to and including 4.0.6, where the signatures might have been accepted as valid even if the signed data was not in bailiwick of the DNSKEY used to sign it. This allows an attacker in position of man-in-the-middle to alter the content of records by issuing a valid signature for the crafted records.

CVSS3: 5.9
1%
Низкий
больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2017:3218-1

Security update for pdns-recursor

почти 9 лет назад

Уязвимостей на страницу