Wednesday, August 20, 2008

Multiple Vendors Vulnerable to DNS Cache Poisoning

Multiple Vendors Vulnerable to DNS Cache Poisoning
Multiple vendor DNS protocol implementations could allow a remote attacker to poison the DNS cache.  Patches that resolve the vulnerability on the DNS may be rendered ineffective if the DNS is behind a NAT device that does not randomize ports. Public exploit code was made available on July 24, 2008.  At the time of this update, neither X-Force nor IBM MSS has witness any active exploitation nor the integration of this exploit into any exploit toolkits.

BitDefender Total Security 2009 - PC Magazine

Research: A third of new PCs being downgraded to XP
Nearly 35% of 3,000-plus PCs examined had been downgraded, says research company

No comments: