PT-2012-3121 · Microsoft · Windows Server 2008

Publicado

2012-02-17

·

Atualizado

2012-02-20

·

CVE-2012-1194

CVSS v2.0

6.4

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Windows Server 2008 before R2
Description The issue concerns the DNS Server service, where the resolver overwrites cached server names and TTL values in NS records during the processing of a response to an A record query. This allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.
Recommendations For Microsoft Windows Server 2008 before R2, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2012-1194

Produtos afetados

Windows Server 2008