PT-2012-3121 · Microsoft · Windows Server 2008

Published

2012-02-17

·

Updated

2012-02-20

·

CVE-2012-1194

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Windows Server 2008 before R2
Description The issue concerns the DNS Server service, where the resolver overwrites cached server names and TTL values in NS records during the processing of a response to an A record query. This allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.
Recommendations For Microsoft Windows Server 2008 before R2, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2012-1194

Affected Products

Windows Server 2008