PT-2008-6278 · Cisco+2 · Cisco+3

Published

2008-07-08

·

Updated

2017-08-08

·

CVE-2008-5133

CVSS v2.0

5.8

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions Sun Solaris versions prior to snv 96 Multiple Cisco products (affected versions not specified)
Description The issue allows remote attackers to bypass an intended protection mechanism and spoof the responses to DNS queries sent by named, when running on a DNS server with Network Address Translation (NAT) configured. This is due to the improper change of the source port of a packet when the destination port is the DNS port. Additionally, the use of insufficiently randomized DNS transaction IDs and UDP source ports in DNS queries may allow an attacker to more easily forge DNS answers that can poison DNS caches.
Recommendations For Sun Solaris versions prior to snv 96: Update to a version after snv 96 to resolve the issue. For Multiple Cisco products: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-5133

Affected Products

Cisco
Cisco Asa
Sun Solaris
Named