6.4
CVSSv2

CVE-2012-1192

Published: 17/02/2012 Updated: 20/02/2012
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

The resolver in Unbound prior to 1.4.11 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote malicious users to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.

Vulnerable Product Search on Vulmon Subscribe to Product

unbound unbound

unbound unbound 1.4.9

unbound unbound 1.4.8

unbound unbound 1.4.7

unbound unbound 1.2.0

unbound unbound 1.1.1

unbound unbound 1.1.0

unbound unbound 1.0.2

unbound unbound 0.3

unbound unbound 0.2

unbound unbound 0.1

unbound unbound 0.0

unbound unbound 1.4.5

unbound unbound 1.4.3

unbound unbound 1.3.1

unbound unbound 1.2.1

unbound unbound 1.0.1

unbound unbound 0.11

unbound unbound 0.6

unbound unbound 0.4

unbound unbound 1.4.2

unbound unbound 1.4.1

unbound unbound 1.4.0

unbound unbound 1.3.4

unbound unbound 1.3.3

unbound unbound 0.9

unbound unbound 0.8

unbound unbound 0.7.2

unbound unbound 0.7.1

unbound unbound 1.4.6

unbound unbound 1.4.4

unbound unbound 1.3.2

unbound unbound 1.3.0

unbound unbound 1.0.0

unbound unbound 0.10

unbound unbound 0.7

unbound unbound 0.5