Get a Pentest and security assessment of your IT network.

Advisories

Technical Cyber Security Alert 2008-190B

Technical Cyber Security Alert TA08-190B – DNS cache poisoning (sometimes referred to as cache pollution) is an attack technique that allows an attacker to introduce forged DNS information into the cache of a caching nameserver. The general concept has been known for some time, and a number of inherent deficiencies in the DNS protocol and defects in common DNS implementations that facilitate DNS cache poisoning have previously been identified and described in public literature. Examples of these vulnerabilities can be found in Vulnerability Note VU#800113. Recent research into these and other related vulnerabilities has produced extremely effective exploitation methods to achieve cache poisoning. Tools and techniques have been developed that can reliably poison a domain of the attacker’s choosing on most current implementations. As a result, the consensus of DNS software implementers is to implement source port randomization in their resolvers as a mitigation.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/68061/TA08-190B.txt

Source: https://packetstormsecurity.com/files/68061/Technical-Cyber-Security-Alert-2008-190B.html

Related posts
Advisories

crossZone.txt

Advisories

Secunia Security Advisory 16900

Advisories

Secunia Security Advisory 19793

Advisories

Secunia Security Advisory 22534