Kerio WinRoute Firewall before 6.0.9 uses information from PTR queries in response to A queries, which allows remote attackers to poison the DNS cache or cause a denial of service (connection loss).
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/18410 | vdb entry |
http://www.osvdb.org/12293 | vdb entry |
http://secunia.com/advisories/13374 | third party advisory patch |
http://www.kerio.com/security_advisory.html | vendor advisory |
http://www.securityfocus.com/bid/11870 | vdb entry |
http://www.osvdb.org/12294 | vdb entry |