PT-2002-1562 · Gnu+1 · Nscd+1
Publicado
2002-08-12
·
Atualizado
2008-09-05
·
CVE-2002-0511
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Caldera OpenLinux versions 3.1 through 3.1.1
Description
The default configuration of the Name Service Cache Daemon (nscd) uses cached PTR records instead of consulting the authoritative DNS server for the A record. This could make it easier for remote attackers to bypass applications that restrict access based on host names.
Recommendations
For Caldera OpenLinux versions 3.1 through 3.1.1, consider reconfiguring the nscd to consult the authoritative DNS server for the A record instead of relying on cached PTR records.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Caldera Openlinux
Nscd