CVE-2000-1218: Critical severity Microsoft Windows 2000 vulnerability
The default configuration for the domain name resolver for Microsoft Windows 98, NT 4.0, 2000, and XP sets the QueryIpMatching parameter to 0, which causes Windows to accept DNS updates from hosts that it did not query, which allows remote attackers to poison the DNS cache.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Change the QueryIpMatching setting from 0 to a non-zero value (enable IP matching) so the resolver only accepts DNS updates from the host it queried, preventing acceptance of unsolicited DNS updates.
Microsoft Windows domain name resolver QueryIpMatching = non-zero (enable IP matching)
Event History
Frequently Asked Questions
What is the severity of CVE-2000-1218?
CVE-2000-1218 is considered critical because it allows remote attackers to poison the DNS cache.
How do I fix CVE-2000-1218?
To fix CVE-2000-1218, configure the QueryIpMatching parameter to a value other than 0.
What systems are affected by CVE-2000-1218?
CVE-2000-1218 affects Microsoft Windows 98, NT 4.0, 2000, and XP, especially in their default configurations.
Can CVE-2000-1218 be exploited remotely?
Yes, CVE-2000-1218 can be exploited remotely by attackers sending malicious DNS updates.
What are the potential impacts of CVE-2000-1218?
The potential impacts of CVE-2000-1218 include unauthorized access to sensitive information and the ability to redirect network traffic.