CVE-2008-1447
The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to spoof DNS traffic via a…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 95.2%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to spoof DNS traffic via a birthday attack that uses in-bailiwick referrals to conduct cache poisoning against recursive resolvers, related to insufficient randomness of DNS transaction IDs and source ports, aka "DNS Insufficient Socket Entropy Vulnerability" or "the Kaminsky bug."
- CVSS 3.1
- 6.8 MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N
- EPSS
- 95.18% probability · 100th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-331
- Affected
- isc/bind
- Source
- secure@microsoft.com
References
- ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2008-009.txt.ascThird Party Advisory, Vendor Advisory
- http://blog.invisibledenizen.org/2008/07/kaminskys-dns-issue-accidentally-leaked.htmlTechnical Description
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=494401Third Party Advisory
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01523520Broken Link
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01662368Broken Link
- http://lists.apple.com/archives/security-announce//2008/Jul/msg00003.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce//2008/Sep/msg00003.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce//2008/Sep/msg00004.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce//2008/Sep/msg00005.htmlMailing List, Third Party Advisory
- http://lists.grok.org.uk/pipermail/full-disclosure/2008-August/064118.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00003.htmlThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00006.htmlThird Party Advisory
- http://marc.info/?l=bugtraq&m=121630706004256&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=121866517322103&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=123324863916385&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=141879471518471&w=2Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2008-0533.htmlThird Party Advisory
- http://secunia.com/advisories/30925Third Party Advisory
- http://secunia.com/advisories/30973Third Party Advisory
- http://secunia.com/advisories/30977Third Party Advisory
- http://secunia.com/advisories/30979Third Party Advisory
- http://secunia.com/advisories/30980Third Party Advisory
- http://secunia.com/advisories/30988Third Party Advisory, Vendor Advisory
- http://secunia.com/advisories/30989Vendor Advisory
- http://secunia.com/advisories/30998Third Party Advisory
- http://secunia.com/advisories/31011Third Party Advisory
- http://secunia.com/advisories/31012Third Party Advisory
- http://secunia.com/advisories/31014Third Party Advisory
- http://secunia.com/advisories/31019Third Party Advisory
- http://secunia.com/advisories/31022Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.