Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability
BID:13729
Info
Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability
| Bugtraq ID: | 13729 |
| Class: | Design Error |
| CVE: |
CVE-2005-4794 CVE-2005-0036 CVE-2005-0037 CVE-2005-0038 |
| Remote: | Yes |
| Local: | No |
| Published: | May 24 2005 12:00AM |
| Updated: | Jul 06 2016 02:40PM |
| Credit: | Discovered by Dr. Steve Beaty from the Department of Mathematical and Computer Sciences at the Metropolitan State College of Denver. |
| Vulnerable: |
PowerDNS PowerDNS 2.9.16 PowerDNS PowerDNS 2.9.15 PowerDNS PowerDNS 2.8 PowerDNS PowerDNS 2.0 RC1 dnrd dnrd 2.10 dnrd dnrd 2.9 dnrd dnrd 2.8 dnrd dnrd 2.7 dnrd dnrd 2.6 dnrd dnrd 2.5 dnrd dnrd 2.4 dnrd dnrd 2.3 dnrd dnrd 2.2 dnrd dnrd 2.1 dnrd dnrd 2.0 dnrd dnrd 1.4 dnrd dnrd 1.3 dnrd dnrd 1.2 dnrd dnrd 1.1 dnrd dnrd 1.0 DeleGate DeleGate 8.10.2 DeleGate DeleGate 8.10.1 DeleGate DeleGate 8.10 DeleGate DeleGate 8.9.6 DeleGate DeleGate 8.9.5 DeleGate DeleGate 8.9.4 DeleGate DeleGate 8.9.3 DeleGate DeleGate 8.9.2 DeleGate DeleGate 8.9.1 DeleGate DeleGate 8.9 DeleGate DeleGate 8.5 .0 DeleGate DeleGate 8.4 .0 DeleGate DeleGate 8.3.4 DeleGate DeleGate 8.3.3 DeleGate DeleGate 7.9.11 DeleGate DeleGate 7.8.2 DeleGate DeleGate 7.8.1 DeleGate DeleGate 7.8 .0 DeleGate DeleGate 7.7.1 DeleGate DeleGate 7.7 .0 Cisco Unity Express Cisco Subscriber Edge Services Manager (SESM) 3.3(1) Cisco Subscriber Edge Services Manager (SESM) 3.2(2) Cisco Subscriber Edge Services Manager (SESM) 3.2(1) Cisco IP Phone 7912 0 Cisco IP Phone 7905 Cisco IP Phone 7902 Cisco Content Router 4450 Cisco Content Router 4430 4.1 Cisco Content Router 4430 4.0 Cisco Content Router 4430 Cisco Content Engine Module for Cisco Router 3800 Series Cisco Content Engine Module for Cisco Router 3700 Series Cisco Content Engine Module for Cisco Router 3600 Series Cisco Content Engine Module for Cisco Router 2800 Series Cisco Content Engine Module for Cisco Router 2600 Series Cisco Content Engine 7325 Cisco Content Engine 7320 4.1 Cisco Content Engine 7320 4.0 Cisco Content Engine 7320 3.1 Cisco Content Engine 7320 2.2 .0 Cisco Content Engine 7320 Cisco Content Engine 590 4.1 Cisco Content Engine 590 4.0 Cisco Content Engine 590 3.1 Cisco Content Engine 590 2.2 .0 Cisco Content Engine 590 Cisco Content Engine 565 Cisco Content Engine 560 4.1 Cisco Content Engine 560 4.0 Cisco Content Engine 560 3.1 Cisco Content Engine 560 2.2 .0 Cisco Content Engine 560 Cisco Content Engine 510 Cisco Content Engine 507 4.1 Cisco Content Engine 507 4.0 Cisco Content Engine 507 3.1 Cisco Content Engine 507 2.2 .0 Cisco Content Engine 507 Cisco Content Distribution Manager 4670 Cisco Content Distribution Manager 4650 4.1 Cisco Content Distribution Manager 4650 4.0 Cisco Content Distribution Manager 4650 Cisco Content Distribution Manager 4630 4.1 Cisco Content Distribution Manager 4630 4.0 Cisco Content Distribution Manager 4630 Cisco ATA-188 Cisco ATA-186 Cisco Application & Content Networking Software (ACNS) Cisco Application & Content Networking Software 5.2.3 .9 Cisco Application & Content Networking Software 5.2.1 .7 Cisco Application & Content Networking Software 5.2 Cisco Application & Content Networking Software 5.1.13 .7 Cisco Application & Content Networking Software 5.1.11 .6 Cisco Application & Content Networking Software 5.1 Cisco Application & Content Networking Software 5.0.17 .6 Cisco Application & Content Networking Software 5.0.5 Cisco Application & Content Networking Software 5.0.3 Cisco Application & Content Networking Software 5.0.1 Cisco Application & Content Networking Software 5.0 Cisco Application & Content Networking Software 4.2.11 Cisco Application & Content Networking Software 4.2.9 Cisco Application & Content Networking Software 4.2.7 Cisco Application & Content Networking Software 4.2 Cisco Application & Content Networking Software 4.1.3 Cisco Application & Content Networking Software 4.1.1 Cisco Application & Content Networking Software 4.0.3 Cisco Application & Content Networking Software |
| Not Vulnerable: |
PowerDNS PowerDNS 2.9.17 dnrd dnrd 2.18 DeleGate DeleGate 8.11.1 DeleGate DeleGate 8.11 DeleGate DeleGate 8.10.6 DeleGate DeleGate 8.10.5 DeleGate DeleGate 8.10.4 DeleGate DeleGate 8.10.3 Cisco Subscriber Edge Services Manager (SESM) 3.3(2) Cisco Application & Content Networking Software 5.3.3 Cisco Application & Content Networking Software 5.2.7 Cisco Application & Content Networking Software 5.1.15 |
Discussion
Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability
Multiple DNS vendors are susceptible to a remote denial-of-service vulnerability. This issue affects both DNS servers and clients.
This issue arises when an affected application handles a specially crafted DNS message.
A successful attack would crash the affected client or server.
Multiple DNS vendors are susceptible to a remote denial-of-service vulnerability. This issue affects both DNS servers and clients.
This issue arises when an affected application handles a specially crafted DNS message.
A successful attack would crash the affected client or server.
Exploit / POC
Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Solution / Fix
Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability
Solution:
The following versions are not affected by this issue; users are advised to upgrade:
- DeleGate 8.10.3 and subsequent versions.
- dnrd 2.18 and subsequent versions.
- PowerDNS 2.9.17.
Cisco has released advisory cisco-sn-20050524-dns to address this issue. Please see the referenced advisory for further information on obtaining fixes.
Solution:
The following versions are not affected by this issue; users are advised to upgrade:
- DeleGate 8.10.3 and subsequent versions.
- dnrd 2.18 and subsequent versions.
- PowerDNS 2.9.17.
Cisco has released advisory cisco-sn-20050524-dns to address this issue. Please see the referenced advisory for further information on obtaining fixes.
References
Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability
References:
References: