DeleGate DNS响应拒绝服务漏洞

漏洞信息详情

DeleGate DNS响应拒绝服务漏洞

漏洞简介

DeleGate 9.0.6 之前的9.x系列版本以及8.11.6之前的8.x系列版本存在多个未明漏洞。这使得远程攻击者可以借助于精心设计的DNS响应信息造成拒绝服务,这些信息造成了(1)缓冲区读过度或(2)无限循环,可以导致分段错误或无效的内存访问,如OUSPG PROTOS DNS测试套件。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:

DeleGate DeleGate 7.7 .0

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 7.7.1

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 7.8 .0

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 7.8.1

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 7.8.2

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 7.9.11

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.10

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.10.1

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.10.2

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.10.3

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.10.4

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.10.5

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.10.6

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.11

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.11.1

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.11.2

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.11.3

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.11.4

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.11.5

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.3.3

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.3.4

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.4 .0

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.5 .0

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.9

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.9.1

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.9.2

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.9.3

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.9.4

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.9.5

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

DeleGate DeleGate 8.9.6

DeleGate delegate8.11.6.tar.gz

ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz

参考网址

来源: US-CERT

名称: VU#955777

链接:http://www.kb.cert.org/vuls/id/955777

来源: BID

名称: 17691

链接:http://www.securityfocus.com/bid/17691

来源: VUPEN

名称: ADV-2006-1506

链接:http://www.frsirt.com/english/advisories/2006/1506

来源: SECTRACK

名称: 1015991

链接:http://securitytracker.com/id?1015991

来源: SECUNIA

名称: 19750

链接:http://secunia.com/advisories/19750

来源: MISC

链接:http://www.niscc.gov.uk/niscc/docs/re-20060425-00312.pdf?lang=en

来源: MISC

链接:http://www.niscc.gov.uk/niscc/docs/br-20060425-00311.html?lang=en

来源: VUPEN

名称: ADV-2006-1505

链接:http://www.frsirt.com/english/advisories/2006/1505

来源: XF

名称: dns-improper-request-handling(26081)

链接:http://xforce.iss.net/xforce/xfdb/26081

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享