CVE-2015-8262: Medium severity buffalo airstation extreme n600 firmware vulnerability
Buffalo WZR-600DHP2 devices with firmware 2.09, 2.13, and 2.16 use an improper algorithm for selecting the ID value in the header of a DNS query, which makes it easier for remote attackers to spoof responses by predicting this value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-8262?
CVE-2015-8262 is classified as a medium severity vulnerability due to the potential for remote attackers to spoof DNS responses.
How do I fix CVE-2015-8262?
To mitigate CVE-2015-8262, update the firmware of your Buffalo WZR-600DHP2 device to a version that is not affected by this vulnerability.
What devices are affected by CVE-2015-8262?
CVE-2015-8262 affects Buffalo WZR-600DHP2 devices running firmware versions 2.09, 2.13, and 2.16.
Can CVE-2015-8262 be exploited remotely?
Yes, CVE-2015-8262 can be exploited remotely by attackers who can predict the ID value in DNS query headers.
What types of attacks are possible due to CVE-2015-8262?
CVE-2015-8262 can allow for DNS spoofing attacks, where an attacker can send false DNS responses to redirect users.