Multiple Vendor Predictable Resolver ID Vulnerability
BID:1166
Info
Multiple Vendor Predictable Resolver ID Vulnerability
Bugtraq ID:
1166
Class:
Design Error
CVE:
Remote:
Yes
Local:
No
Published:
May 03 2000 12:00AM
Updated:
May 03 2000 12:00AM
Credit:
This vulnerability was posted to the Bugtraq mailing list on May 3, 2000 by <[email protected]>
Vulnerable:
ISC BIND 8.2.2 p5
+
Caldera OpenLinux Desktop 2.3
+
Caldera UnixWare 7.1.1
+
Debian Linux 2.3 sparc
+
Debian Linux 2.3 powerpc
+
Debian Linux 2.3 arm
+
Debian Linux 2.3 alpha
+
Debian Linux 2.3 68k
+
Debian Linux 2.3
+
Debian Linux 2.2 sparc
+
Debian Linux 2.2 powerpc
+
Debian Linux 2.2 arm
+
Debian Linux 2.2 alpha
+
Debian Linux 2.2 68k
+
Debian Linux 2.2
+
IBM AIX 4.3.3
+
IBM AIX 4.3.2
+
IBM AIX 4.3.1
+
IBM AIX 4.3
+
MandrakeSoft Corporate Server 1.0.1
+
MandrakeSoft Single Network Firewall 7.2
+
Mandriva Linux Mandrake 7.2
+
Mandriva Linux Mandrake 7.1
+
Mandriva Linux Mandrake 7.0
+
Mandriva Linux Mandrake 6.1
+
Mandriva Linux Mandrake 6.0
+
Redhat Linux 7.0 J sparc
+
Redhat Linux 7.0 J i386
+
Redhat Linux 7.0 J alpha
+
Redhat Linux 7.0 sparc
+
Redhat Linux 7.0 i386
+
Redhat Linux 7.0 alpha
+
Redhat Linux 6.2 E sparc
+
Redhat Linux 6.2 E i386
+
Redhat Linux 6.2 E alpha
+
Redhat Linux 6.2 sparc
+
Redhat Linux 6.2 i386
+
Redhat Linux 6.2 alpha
+
Redhat Linux 6.1 sparc
+
Redhat Linux 6.1 i386
+
Redhat Linux 6.1 alpha
+
Redhat Linux 6.0 sparc
+
Redhat Linux 6.0 alpha
+
Redhat Linux 6.0
+
Redhat Linux 5.2 sparc
+
Redhat Linux 5.2 i386
+
Redhat Linux 5.2 alpha
+
SCO eDesktop 2.4
+
SCO eServer 2.3
+
SuSE Linux 6.4 ppc
+
SuSE Linux 6.4 alpha
+
SuSE Linux 6.4
+
SuSE Linux 6.3 alpha
+
SuSE Linux 6.3
+
SuSE Linux 6.2
+
SuSE Linux 6.1 alpha
+
SuSE Linux 6.1
+
SuSE Linux 6.0
+
Trustix Trustix Secure Linux 1.1
+
Trustix Trustix Secure Linux 1.0
ISC BIND 8.2.2 p4
ISC BIND 8.2.2 p3
ISC BIND 8.2.2 p2
ISC BIND 8.2.2 p1
ISC BIND 8.2.2
ISC BIND 8.2.1
ISC BIND 8.2
-
Caldera OpenLinux 2.2
-
Caldera OpenLinux 1.3
-
Caldera UnixWare 7.1.1
-
IBM AIX 4.3.3
-
IBM AIX 4.3.2
-
IBM AIX 4.3.1
-
IBM AIX 4.3
-
Redhat Linux 6.1 i386
-
Redhat Linux 6.0
-
Redhat Linux 5.2 i386
-
Redhat Linux 5.1
-
Redhat Linux 5.0
-
Redhat Linux 4.2
-
Redhat Linux 4.1
-
Redhat Linux 4.0
-
Slackware Linux 4.0
GNU glibc 2.1.3
+
Debian Linux 2.2 sparc
+
Debian Linux 2.2 powerpc
+
Debian Linux 2.2 IA-32
+
Debian Linux 2.2 arm
+
Debian Linux 2.2 alpha
+
Debian Linux 2.2 68k
+
Debian Linux 2.2
+
EnGarde Secure Linux 1.0.1
+
HP Secure OS software for Linux 1.0
+
MandrakeSoft Corporate Server 1.0.1
+
MandrakeSoft Single Network Firewall 7.2
+
Mandriva Linux Mandrake 7.2
+
Mandriva Linux Mandrake 7.1
+
Openwall Openwall GNU/*/Linux 0.1 -stable
+
Redhat Linux 6.2 sparcv9
+
Redhat Linux 6.2 sparc
+
Redhat Linux 6.2 i386
+
Redhat Linux 6.2 alpha
+
Redhat Linux 6.2
+
SuSE Linux 7.0 sparc
+
SuSE Linux 7.0 ppc
+
SuSE Linux 7.0 i386
+
SuSE Linux 7.0 alpha
+
SuSE Linux 7.0
+
SuSE Linux 6.4 ppc
+
SuSE Linux 6.4 i386
+
SuSE Linux 6.4 alpha
+
SuSE Linux 6.4
+
Trustix Secure Linux 1.5
+
Trustix Secure Linux 1.2
+
Trustix Secure Linux 1.1
+
Trustix Secure Linux 1.0 1
GNU glibc 2.1.2
GNU glibc 2.1.1
GNU glibc 2.1
GNU glibc 2.0
Not Vulnerable:
Exploit / POC
Multiple Vendor Predictable Resolver ID Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].