LWN.net Logo

Dan Kaminsky Discovers Fundamental Issue In DNS: Massive Multivendor Patch Released (Securosis.com)

Dan Kaminsky Discovers Fundamental Issue In DNS: Massive Multivendor Patch Released (Securosis.com)

Posted Jul 9, 2008 1:04 UTC (Wed) by miguelzinho (subscriber, #40535)
Parent article: Dan Kaminsky Discovers Fundamental Issue In DNS: Massive Multivendor Patch Released (Securosis.com)

It seams to me that this problem was addressed before, back in 2007. Although no one has
disclosed how the attack works, but it is very likely that the issue is the same: clients keep
the same source port for every query.

http://www.trusteer.com/bind9dns


(Log in to post comments)

Dan Kaminsky Discovers Fundamental Issue In DNS: Massive Multivendor Patch Released (Securosis.com)

Posted Jul 9, 2008 3:05 UTC (Wed) by rfunk (subscriber, #4054) [Link]

Sounds to me like the attack was just theoretical before, but is now 
practical.

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds