|
|
>> Blue Coat Products DNS Protocol Cache Poisoning Vulnerability
|
Title : Blue Coat Products DNS Protocol Cache Poisoning Vulnerability Advisory ID : VUPEN/ADV-2008-2139 CVE ID : CVE-2008-1447 CWE ID : CWE-331
Rated as : Moderate Risk 
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-07-18
|
|
A vulnerability has been identified in various Blue Coat products, which could be exploited by remote attackers to poison a vulnerable DNS cache [...]
Affected Products
Blue Coat ProxySG versions prior to 4.2.8.7
Blue Coat ProxySG versions prior to 5.2.4.3
Blue Coat Director versions prior to 4.2.2.4
Blue Coat Director versions prior to 5.2.2.5
Blue Coat ProxyRA versions prior to 2.3.2.1
Blue Coat PacketShaper versions prior to 8.3.2
Blue Coat PacketShaper versions prior to 8.4.0
Blue Coat iShaper versions prior to 8.3.2
Credits
Vulnerability reported by Dan Kaminsky (IOActive).
ChangeLog
2008-07-18 : Initial release
Vulnerability Management
Subscribe to VUPEN Security VNS and receive real-time e-mail and SMS alerts when new vulnerabilities, exploits, or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form or by email to updates@vupen.com. | |
|