Логотип exploitDog
bind:CVE-2014-4883
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-4883

Количество 4

Количество 4

ubuntu логотип

CVE-2014-4883

около 11 лет назад

resolv.c in the DNS resolver in uIP, and dns.c in the DNS resolver in lwIP 1.4.1 and earlier, does not use random values for ID fields and source ports of DNS query packets, which makes it easier for man-in-the-middle attackers to conduct cache-poisoning attacks via spoofed reply packets.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2014-4883

около 11 лет назад

resolv.c in the DNS resolver in uIP, and dns.c in the DNS resolver in lwIP 1.4.1 and earlier, does not use random values for ID fields and source ports of DNS query packets, which makes it easier for man-in-the-middle attackers to conduct cache-poisoning attacks via spoofed reply packets.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2014-4883

около 11 лет назад

resolv.c in the DNS resolver in uIP, and dns.c in the DNS resolver in ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-r2m4-j583-8hw8

больше 3 лет назад

resolv.c in the DNS resolver in uIP, and dns.c in the DNS resolver in lwIP 1.4.1 and earlier, does not use random values for ID fields and source ports of DNS query packets, which makes it easier for man-in-the-middle attackers to conduct cache-poisoning attacks via spoofed reply packets.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2014-4883

resolv.c in the DNS resolver in uIP, and dns.c in the DNS resolver in lwIP 1.4.1 and earlier, does not use random values for ID fields and source ports of DNS query packets, which makes it easier for man-in-the-middle attackers to conduct cache-poisoning attacks via spoofed reply packets.

CVSS2: 4.3
0%
Низкий
около 11 лет назад
nvd логотип
CVE-2014-4883

resolv.c in the DNS resolver in uIP, and dns.c in the DNS resolver in lwIP 1.4.1 and earlier, does not use random values for ID fields and source ports of DNS query packets, which makes it easier for man-in-the-middle attackers to conduct cache-poisoning attacks via spoofed reply packets.

CVSS2: 4.3
0%
Низкий
около 11 лет назад
debian логотип
CVE-2014-4883

resolv.c in the DNS resolver in uIP, and dns.c in the DNS resolver in ...

CVSS2: 4.3
0%
Низкий
около 11 лет назад
github логотип
GHSA-r2m4-j583-8hw8

resolv.c in the DNS resolver in uIP, and dns.c in the DNS resolver in lwIP 1.4.1 and earlier, does not use random values for ID fields and source ports of DNS query packets, which makes it easier for man-in-the-middle attackers to conduct cache-poisoning attacks via spoofed reply packets.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу