djbdns dnscache SOA Requests Remote Cache Poisoning Vulnerability
BID:33818
Info
djbdns dnscache SOA Requests Remote Cache Poisoning Vulnerability
| Bugtraq ID: | 33818 |
| Class: | Design Error |
| CVE: |
CVE-2008-4392 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 09 2009 12:00AM |
| Updated: | Apr 13 2015 08:48PM |
| Credit: | Kevin Day |
| Vulnerable: |
djbdns djbdns 1.05 |
| Not Vulnerable: | |
Discussion
djbdns dnscache SOA Requests Remote Cache Poisoning Vulnerability
The 'djbdns' suite is prone to a remote cache-poisoning vulnerability.
An attacker may leverage this issue to manipulate cache data, potentially facilitating man-in-the-middle, site-impersonation, or denial-of-service attacks.
This issue affects djbdns 1.05; other versions may also be vulnerable.
The 'djbdns' suite is prone to a remote cache-poisoning vulnerability.
An attacker may leverage this issue to manipulate cache data, potentially facilitating man-in-the-middle, site-impersonation, or denial-of-service attacks.
This issue affects djbdns 1.05; other versions may also be vulnerable.
Exploit / POC
djbdns dnscache SOA Requests Remote Cache Poisoning Vulnerability
Proof-of-concept examples are available in the referenced document by Kevin Day.
Proof-of-concept examples are available in the referenced document by Kevin Day.
Solution / Fix
djbdns dnscache SOA Requests Remote Cache Poisoning Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
djbdns dnscache SOA Requests Remote Cache Poisoning Vulnerability
References:
References:
- djbdns Home Page (djbdns)
- djbdns patches (Your.Org)
- Rapid DNS Poisoning in djbdns (Kevin Day)