漏洞信息详情
DeleGate DNS响应拒绝服务漏洞
- CNNVD编号:CNNVD-200604-533
- 危害等级: 中危
- CVE编号:
CVE-2006-2072
- 漏洞类型:
设计错误
- 发布时间:
2006-04-27
- 威胁类型:
远程
- 更新时间:
2006-04-28
- 厂 商:
delegate - 漏洞来源:
This issue was dis… -
漏洞简介
DeleGate 9.0.6 之前的9.x系列版本以及8.11.6之前的8.x系列版本存在多个未明漏洞。这使得远程攻击者可以借助于精心设计的DNS响应信息造成拒绝服务,这些信息造成了(1)缓冲区读过度或(2)无限循环,可以导致分段错误或无效的内存访问,如OUSPG PROTOS DNS测试套件。
漏洞公告
目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:
DeleGate DeleGate 7.7 .0
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 7.7.1
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 7.8 .0
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 7.8.1
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 7.8.2
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 7.9.11
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.10
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.10.1
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.10.2
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.10.3
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.10.4
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.10.5
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.10.6
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.11
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.11.1
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.11.2
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.11.3
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.11.4
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.11.5
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.3.3
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.3.4
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.4 .0
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.5 .0
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.9
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.9.1
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.9.2
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.9.3
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.9.4
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.9.5
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
DeleGate DeleGate 8.9.6
DeleGate delegate8.11.6.tar.gz
ftp://ftp.delegate.org/pub/DeleGate/delegate8.11.6.tar.gz
参考网址
来源: US-CERT
名称: VU#955777
链接:http://www.kb.cert.org/vuls/id/955777
来源: BID
名称: 17691
链接:http://www.securityfocus.com/bid/17691
来源: VUPEN
名称: ADV-2006-1506
链接:http://www.frsirt.com/english/advisories/2006/1506
来源: SECTRACK
名称: 1015991
链接:http://securitytracker.com/id?1015991
来源: SECUNIA
名称: 19750
链接:http://secunia.com/advisories/19750
来源: MISC
链接:http://www.niscc.gov.uk/niscc/docs/re-20060425-00312.pdf?lang=en
来源: MISC
链接:http://www.niscc.gov.uk/niscc/docs/br-20060425-00311.html?lang=en
来源: VUPEN
名称: ADV-2006-1505
链接:http://www.frsirt.com/english/advisories/2006/1505
来源: XF
名称: dns-improper-request-handling(26081)