SB2012032802 - Input validation error in MaraDNS
Published: March 28, 2012 Updated: August 11, 2020
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Input validation error (CVE-ID: CVE-2012-1570)
The vulnerability allows a remote non-authenticated attacker to manipulate or delete data.
The resolver in MaraDNS before 1.3.0.7.15 and 1.4.x before 1.4.12 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.
Remediation
Install update from vendor's website.
References
- http://osvdb.org/80192
- http://secunia.com/advisories/48492
- http://www.maradns.org/changelog.html
- http://www.openwall.com/lists/oss-security/2012/03/20/1
- http://www.openwall.com/lists/oss-security/2012/03/20/10
- http://www.securitytracker.com/id?1026821
- https://bugzilla.redhat.com/show_bug.cgi?id=804770
- https://exchange.xforce.ibmcloud.com/vulnerabilities/74119