CVE-2012-1192: Medium severity unbound vulnerability
The resolver in Unbound before 1.4.11 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1192?
CVE-2012-1192 has a medium severity rating, allowing remote attackers potential exploits.
How do I fix CVE-2012-1192?
To fix CVE-2012-1192, upgrade Unbound to version 1.4.11 or later.
What versions of Unbound are affected by CVE-2012-1192?
CVE-2012-1192 affects Unbound versions prior to 1.4.11, including all versions in the 1.4.x range up to 1.4.10.
What kind of attack does CVE-2012-1192 facilitate?
CVE-2012-1192 facilitates a 'ghost domain names' attack, allowing continued resolvability of revoked domain names.
Is CVE-2012-1192 a local or remote vulnerability?
CVE-2012-1192 is a remote vulnerability that can be exploited by attackers over the network.