← Zuruck zu CVEs
CVE-2022-33993
MEDIUM5.3
Beschreibung
Misinterpretation of special domain name characters in DNRD (aka Domain Name Relay Daemon) 2.20.3 leads to cache poisoning because domain names and their associated IP addresses are cached in their misinterpreted form.
CVE Details
CVSS v3.1 Bewertung5.3
SchweregradMEDIUM
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionNONE
Veroffentlicht8/15/2022
Zuletzt geandert11/21/2024
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
domain_name_relay_daemon_project:domain_name_relay_daemon
Referenzen
http://dnrd.sourceforge.net/(cve@mitre.org)
https://www.openwall.com/lists/oss-security/2022/08/14/1(cve@mitre.org)
http://dnrd.sourceforge.net/(af854a3a-2127-422b-91ae-364da2661108)
https://www.openwall.com/lists/oss-security/2022/08/14/1(af854a3a-2127-422b-91ae-364da2661108)
https://www.usenix.org/conference/usenixsecurity21/presentation/jeitner(af854a3a-2127-422b-91ae-364da2661108)
https://www.usenix.org/conference/usenixsecurity22/presentation/jeitner(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.