First published: Fri Aug 08 2008(Updated: )
PowerDNS Authoritative Server before 2.9.21.1 drops malformed queries, which might make it easier for remote attackers to poison DNS caches of other products running on other servers, a different issue than CVE-2008-1447 and CVE-2008-3217.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/pdns | 4.1.6-3+deb10u1 4.4.1-1 4.7.3-2 4.8.3-1 | |
PowerDNS | <=2.9.21 | |
PowerDNS DNSDist |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-3337 is considered a moderate severity vulnerability that can lead to DNS cache poisoning.
To fix CVE-2008-3337, upgrade PowerDNS Authoritative Server to version 2.9.21.1 or later.
CVE-2008-3337 affects PowerDNS Authoritative Server versions prior to 2.9.21.
Yes, CVE-2008-3337 can be exploited by remote attackers through malformed DNS queries.
The consequence of CVE-2008-3337 is the potential for DNS cache poisoning, impacting the integrity of DNS responses.