27584Third-party advisory
http://secunia.com/advisories/27584 CVE-2007-3898
Microsoft Windows Server 2000/2003 - Recursive DNS Spoofing (1)
Record summary
CVE-2007-3898 has a selected CVSS score of 6.4; EIP currently links 2 catalogued exploits.
Description
The DNS server in Microsoft Windows 2000 Server SP4, and Server 2003 SP1 and SP2, uses predictable transaction IDs when querying other DNS servers, which allows remote attackers to spoof DNS replies, poison the DNS cache, and facilitate further attack vectors.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBMicrosoft Windows Server 2000/2003 - Recursive DNS Spoofing (1)ExploitDB exploitby Alla BerzroutchkoNot analyzed1 file
ExploitDBMicrosoft Windows Server 2000/2003 - Recursive DNS Spoofing (2)ExploitDB exploitby Alla BerzroutchkoNot analyzed1 file
References
Showing 12 of 163373Third-party advisory
http://securityreason.com/securityalert/3373 VU#484649Third-party advisory
http://www.kb.cert.org/vuls/id/484649 scanit.be
http://www.scanit.be/advisory-2007-11-14.html 20071113 After 6 months - fix available for Microsoft DNS cache poisoning attackmailing list
http://www.securityfocus.com/archive/1/483635/100/0/threaded 20071114 Predictable DNS transaction IDs in Microsoft DNS Servermailing list
http://www.securityfocus.com/archive/1/483698/100/0/threaded HPSBST02291Vendor advisory
http://www.securityfocus.com/archive/1/484186/100/0/threaded 25919vdb entry
http://www.securityfocus.com/bid/25919 1018942vdb entry
http://www.securitytracker.com/id?1018942 trusteer.com
http://www.trusteer.com/docs/windowsdns.html TA07-317AThird-party advisory
http://www.us-cert.gov/cas/techalerts/TA07-317A.html ADV-2007-3848vdb entry
http://www.vupen.com/english/advisories/2007/3848