메뉴 건너뛰기

GREATUSER

cve

CVE-2017-15090

관리자 2018.01.25 04:00 조회 수 : 33

An issue has been found in the DNSSEC validation component of PowerDNS Recursor from 4.0.0 and up to and including 4.0.6, where the signatures might have been accepted as valid even if the signed data was not in bailiwick of the DNSKEY used to sign it. This allows an attacker in position of man-in-the-middle to alter the content of records by issuing a valid signature for the crafted records.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-15090
번호 제목 글쓴이 날짜 조회 수
122 CVE-2018-1000013 관리자 2018.01.25 31
121 CVE-2017-15092 관리자 2018.01.25 31
120 CVE-2016-3210 관리자 2016.06.17 32
119 CVE-2017-0005 관리자 2017.03.18 32
118 CVE-2015-1324 관리자 2017.08.27 32
117 CVE-2017-14099 관리자 2017.09.04 32
116 CVE-2017-16659 관리자 2017.11.09 32
115 CVE-2018-5968 관리자 2018.01.25 32
114 CVE-2017-2741 관리자 2018.01.25 32
113 CVE-2017-13138 (bridge) 관리자 2017.08.27 33
112 CVE-2015-4180 관리자 2017.08.27 33
111 CVE-2017-14098 관리자 2017.09.04 33
110 CVE-2017-10793 관리자 2017.09.04 33
109 CVE-2017-16647 관리자 2017.11.09 33
» CVE-2017-15090 관리자 2018.01.25 33
위로