Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2012-1193

Overview

Vulnerability Score 6.4 6.4
CVE Id CVE-2012-1193
Last Modified 12 Dec 2013 11:57:32
Published 17 Feb 2012 05:55:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2012-1193

Summary

The resolver in PowerDNS Recursor (aka pdns_recursor) 3.3 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.

Vulnerable Systems

Application

  • Powerdns Recursor 3.3


References

MISC - https://www.isc.org/files/imce/ghostdomain_camera.pdf

FEDORA - FEDORA-2013-6279

FEDORA - FEDORA-2013-6316

FEDORA - FEDORA-2013-5692


Last Updated: 27 May 2016 10:58:17