CVE-2012-1192 Information

Description

The resolver in Unbound before 1.4.11 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query which allows remote attackers to trigger continued resolvability of revoked domain names via a \ghost domain names\ attack.

Reference

https://www.isc.org/files/imce/ghostdomain_camera.pdf

Share on: