Wednesday, August 27, 2008

Multiple Vendors Vulnerable to DNS Cache Poisoning

Multiple Vendors Vulnerable to DNS Cache Poisoning
Multiple vendor DNS protocol implementations could allow a remote attacker to poison the DNS cache.  Patches that resolve the vulnerability on the DNS may be rendered ineffective if the DNS is behind a NAT device that does not randomize ports. Public exploit code was made available on July 24, 2008.  At the time of this update, neither X-Force nor IBM MSS has witness any active exploitation nor the integration of this exploit into any exploit toolkits.

Panda Security Launches New 2009 Consumer Solutions Offering ... - IT News Online

Huge Internet Security Hole Demonstrated - BroadbandReports.com

Public, private sector at odds over cyber security - Los Angeles Times

No comments: