CVE-2008-4100
published 2008-09-18CVE-2008-4100: GNU adns 1.4 and earlier uses a fixed source port and sequential transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS…
PriorityP424medium6.4CVSS 2.0
AVNACLAuNCNIPAP
EPSS
1.49%
71.3th percentile
GNU adns 1.4 and earlier uses a fixed source port and sequential transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. NOTE: the vendor reports that this is intended behavior and is compatible with the product's intended role in a trusted environment.
Affected
19 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | adns | < adns 1.4-2 (bookworm) | adns 1.4-2 (bookworm) |
| gnu | adns | <= 1.4 | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | — | — |
| gnu | adns | >= 0 < 1.4-2 | 1.4-2 |
| gnu | adns | >= 0 < 1.4-2 | 1.4-2 |
| gnu | adns | >= 0 < 1.4-2 | 1.4-2 |
| gnu | adns | >= 0 < 1.4-2 | 1.4-2 |
CVSS provenance
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:P
osv6.8MEDIUM
vendor_debian6.8LOW
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
adns: DNS spoofing flaw
vendor_redhat·2008-09-11·CVSS 6.8
CVE-2008-4100 [MEDIUM] adns: DNS spoofing flaw
adns: DNS spoofing flaw
GNU adns 1.4 and earlier uses a fixed source port and sequential transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. NOTE: the vendor reports that this is intended behavior and is compatible with the product's intended role in a trusted environment.
Debian
CVE-2008-4100: adns - GNU adns 1.4 and earlier uses a fixed source port and sequential transaction IDs...
vendor_debian·2008·CVSS 6.8
CVE-2008-4100 [MEDIUM] CVE-2008-4100: adns - GNU adns 1.4 and earlier uses a fixed source port and sequential transaction IDs...
GNU adns 1.4 and earlier uses a fixed source port and sequential transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. NOTE: the vendor reports that this is intended behavior and is compatible with the product's intended role in a trusted environment.
Scope: local
bookworm: resolved (fixed in 1.4-2)
bullseye: resolved (fixed in 1.4-2)
forky: resolved (fixed in 1.4-2)
sid: resolved (fixed in 1.4-2)
trixie: resolved (fixed in 1.4-2)
GHSA
GHSA-qpj2-q7ff-rjvv: GNU adns 1
ghsa_unreviewed·2022-05-02·CVSS 6.8
CVE-2008-4100 [MEDIUM] GHSA-qpj2-q7ff-rjvv: GNU adns 1
GNU adns 1.4 and earlier uses a fixed source port and sequential transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. NOTE: the vendor reports that this is intended behavior and is compatible with the product's intended role in a trusted environment.
OSV
CVE-2008-4100: GNU adns 1
osv·2008-09-18·CVSS 6.8
CVE-2008-4100 [MEDIUM] CVE-2008-4100: GNU adns 1
GNU adns 1.4 and earlier uses a fixed source port and sequential transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. NOTE: the vendor reports that this is intended behavior and is compatible with the product's intended role in a trusted environment.
No detection rules found.
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=492698http://www.openwall.com/lists/oss-security/2008/09/11/1http://www.openwall.com/lists/oss-security/2008/09/16/4https://www.exploit-db.com/exploits/6197http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=492698http://www.openwall.com/lists/oss-security/2008/09/11/1http://www.openwall.com/lists/oss-security/2008/09/16/4https://www.exploit-db.com/exploits/6197
2008-09-18
Published