漏洞信息详情
多个供应商DNS响应泛滥拒绝服务漏洞
- CNNVD编号:CNNVD-200412-718
- 危害等级: 中危
- CVE编号:
CVE-2004-0789
- 漏洞类型:
设计错误
- 发布时间:
2004-12-31
- 威胁类型:
远程
- 更新时间:
2006-04-07
- 厂 商:
delegate - 漏洞来源:
Roy Arends and Jak… -
漏洞简介
DNS协议的多种实现方式存在漏洞,包括:(1)如Posadis所使用的Poslib 1.0.2-1及其以前的版本,(2) 固件3.13以前版本中的AxisNetwork产品,和(3)Men & Mice Suite 2.2.3以前的2.2x版本和3.5.2以前的3.5.x版本,远程攻击者借助(a)具有本地主机的DNS查询包作为一个欺骗性的源地址或者(b)触发一个响应包的应答包,从而触发一个通讯环导致服务拒绝(CPU和网络带宽消耗)。
漏洞公告
Axis Communications has released versions of firmware resolving this issue for various video server and network camera products. Please contact the vendor for further information on obtaining fixed firmware versions for affected products.
DNRD has stated that versions 2.11 and above are not susceptible to this vulnerability.
Mice & Men has released versions 3.5.2 and 2.2.3 of QuickDNS Server for Mac OS 8 and 9 to address this issue. Please contact the vendor for further information on obtaining fixes.
MyDNS has stated that versions 0.10.1 and above are not susceptible to this vulnerability.
MaraDNS is reportedly vulnerable in versions up to, and including 0.8.05. Versions after 0.9.05 are reported fixed.
DeleGate has released version 8.9.6 of its proxy application to address this issue.
Qbik WinGate is reported susceptible to this issue in verions up to and including 6.0.1. Versions after 6.0.1 are reported fixed.
Posadis Posadis m5pre2
-
Posadis posadis-0.60.5.tar.gz
http://prdownloads.sourceforge.net/posadis/posadis-0.60.5.tar.gz -
Posadis poslib-1.0.5.tar.gz
http://prdownloads.sourceforge.net/posadis/poslib-1.0.5.tar.gz
Posadis Posadis m5pre1
-
Posadis posadis-0.60.5.tar.gz
http://prdownloads.sourceforge.net/posadis/posadis-0.60.5.tar.gz -
Posadis poslib-1.0.5.tar.gz
http://prdownloads.sourceforge.net/posadis/poslib-1.0.5.tar.gz
Don Moore MyDNS 0.10 .0
-
Don Moore mydns-0.11.0.tar.gz
http://mydns.bboy.net/download/mydns-0.11.0.tar.gz
MaraDNS MaraDNS 0.5.28
-
MaraDNS maradns-1.0.23.tar.bz2
http://www.maradns.org/download/maradns-1.0.23.tar.bz2
MaraDNS MaraDNS 0.5.29
-
MaraDNS maradns-1.0.23.tar.bz2
http://www.maradns.org/download/maradns-1.0.23.tar.bz2
MaraDNS MaraDNS 0.5.30
-
MaraDNS maradns-1.0.23.tar.bz2
http://www.maradns.org/download/maradns-1.0.23.tar.bz2
MaraDNS MaraDNS 0.5.31
-
MaraDNS maradns-1.0.23.tar.bz2
http://www.maradns.org/download/maradns-1.0.23.tar.bz2
Posadis Posadis 0.50.4
-
Posadis posadis-0.60.5.tar.gz
http://prdownloads.sourceforge.net/posadis/posadis-0.60.5.tar.gz -
Posadis poslib-1.0.5.tar.gz
http://prdownloads.sourceforge.net/posadis/poslib-1.0.5.tar.gz
Posadis Posadis 0.50.5
-
Posadis posadis-0.60.5.tar.gz
http://prdownloads.sourceforge.net/posadis/posadis-0.60.5.tar.gz -
Posadis poslib-1.0.5.tar.gz
http://prdownloads.sourceforge.net/posadis/poslib-1.0.5.tar.gz
Posadis Posadis 0.50.6
-
Posadis posadis-0.60.5.tar.gz
http://prdownloads.sourceforge.net/posadis/posadis-0.60.5.tar.gz -
Posadis poslib-1.0.5.tar.gz
http://prdownloads.sourceforge.net/posadis/poslib-1.0.5.tar.gz
Posadis Posadis 0.50.7
-
Posadis posadis-0.60.5.tar.gz
http://prdownloads.sourceforge.net/posadis/posadis-0.60.5.tar.gz -
Posadis poslib-1.0.5.tar.gz
http://prdownloads.sourceforge.net/posadis/poslib-1.0.5.tar.gz
Posadis Posadis 0.50.9
-
Posadis posadis-0.60.5.tar.gz
http://prdownloads.sourceforge.net/posadis/posadis-0.60.5.tar.gz -
Posadis poslib-1.0.5.tar.gz
http://prdownloads.sourceforge.net/posadis/poslib-1.0.5.tar.gz
Don Moore MyDNS 0.6 ,x
-
Don Moore mydns-0.11.0.tar.gz
http://mydns.bboy.net/download/mydns-0.11.0.tar.gz
Posadis Posadis 0.60 .0
-
Posadis posadis-0.60.5.tar.gz
http://prdownloads.sourceforge.net/posadis/posadis-0.60.5.tar.gz -
Posadis poslib-1.0.5.tar.gz
http://prdownloads.sourceforge.net/posadis/poslib-1.0.5.tar.gz
Posadis Posadis 0.60.1
-
Posadis posadis-0.60.5.tar.gz
http://prdownloads.sourceforge.net/posadis/posadis-0.60.5.tar.gz -
Posadis poslib-1.0.5.tar.gz
http://prdownloads.sourceforge.net/posadis/poslib-1.0.5.tar.gz
Don Moore MyDNS 0.7 ,x
-
Don Moore mydns-0.11.0.tar.gz
http://mydns.bboy.net/download/mydns-0.11.0.tar.gz
Don Moore MyDNS 0.8 ,x
-
Don Moore mydns-0.11.0.tar.gz
http://mydns.bboy.net/download/mydns-0.11.0.tar.gz
Don Moore MyDNS 0.9 ,x
-
Don Moore mydns-0.11.0.tar.gz
http://mydns.bboy.net/download/mydns-0.11.0.tar.gz
dnrd dnrd 1.0
-
dnrd dnrd-2.17.1.tar.gz
http://prdownloads.sourceforge.net/dnrd/dnrd-2.17.1.tar.gz?download
dnrd dnrd 1.1
-
dnrd dnrd-2.17.1.tar.gz
http://prdownloads.sourceforge.net/dnrd/dnrd-2.17.1.tar.gz?download
dnrd dnrd 1.2
-
dnrd dnrd-2.17.1.tar.gz
http://prdownloads.sourceforge.net/dnrd/dnrd-2.17.1.tar.gz?download
dnrd dnrd 1.3
-
dnrd dnrd-2.17.1.tar.gz
http://prdownloads.sourceforge.net/dnrd/dnrd-2.17.1.tar.gz?download
dnrd dnrd 1.4