PowerDNS Recursor before 3.1.6 does not always use the strongest random number generator for source port selection, which makes it easier for remote attack vectors to conduct DNS cache poisoning. NOTE: this is related to incomplete integration of security improvements associated with addressing CVE-2008-1637.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2008-07-18T16:00:00
Updated: 2024-08-07T09:28:41.717Z
Reserved: 2008-07-18T00:00:00
Link: CVE-2008-3217
Vulnrichment
No data.
NVD
Status : Modified
Published: 2008-07-18T16:41:00.000
Modified: 2017-08-08T01:31:41.043
Link: CVE-2008-3217
Redhat