CVE-2008-4100

EPSS 0.61%
發布日:2008/9/18修改日:2026/4/28

描述

GNU adns 1.4 and earlier uses a fixed source port and sequential transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. NOTE: the vendor reports that this is intended behavior and is compatible with the product's intended role in a trusted environment.

受影響套件(1)

參考連結(1)