Multiple Name Server NXDomain Denial Of Service Vulnerability
BID:7217
Info
Multiple Name Server NXDomain Denial Of Service Vulnerability
| Bugtraq ID: | 7217 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 27 2003 12:00AM |
| Updated: | Mar 27 2003 12:00AM |
| Credit: | This issue was reported by CERT. |
| Vulnerable: |
Microsoft Windows 2000 Server SP3 Microsoft Windows 2000 Server SP2 Microsoft Windows 2000 Server SP1 Microsoft Windows 2000 Server Microsoft Windows 2000 Datacenter Server SP3 Microsoft Windows 2000 Datacenter Server SP2 Microsoft Windows 2000 Datacenter Server SP1 Microsoft Windows 2000 Datacenter Server Microsoft Windows 2000 Advanced Server SP3 Microsoft Windows 2000 Advanced Server SP2 Microsoft Windows 2000 Advanced Server SP1 Microsoft Windows 2000 Advanced Server ISC BIND 9.2.2 ISC BIND 9.2.1 ISC BIND 9.2 ISC BIND 9.1.3 ISC BIND 9.1.2 ISC BIND 9.1.1 ISC BIND 9.1 Cisco WebNS 7.1 0.1.02 Cisco WebNS 5.0 3 Cisco WebNS 5.0 0.1.05 |
| Not Vulnerable: |
Cisco WebNS 7.2 0.0.03 Cisco WebNS 7.1 0.2.06 Cisco WebNS 6.10 Cisco WebNS 5.0 0.2.01 Cisco WebNS 5.0 0.1.08S |
Discussion
Multiple Name Server NXDomain Denial Of Service Vulnerability
It has been reported that an issue in the handling of some types of DNS requests exists. Because of response codes sent for some queries, an attacker could abuse this handling problem to deny name resolution to users of one name server to hosts of another domain.
It has been reported that an issue in the handling of some types of DNS requests exists. Because of response codes sent for some queries, an attacker could abuse this handling problem to deny name resolution to users of one name server to hosts of another domain.