Preface: DNS TSIG name overflowLogo -Internet Security Systems

DNS TSIG name overflow

advICE :Intrusions : 2000421
 FAQ
Oh my gosh, I'm being HACKED!!!
How do I report the hacker to my ISP?
I'm seeing lots of attacks, is this normal?
Summary

An attacker has sent a DNS query that includes several long names.

Details

This is an attempt to crash or compromise the DNS server

 more information
DNS  
More about the DNS service.  
CERT: CA-2000.20   Mulitple Denial-of-Service Problems in ISC BIND
 
CERT: CA-2001.02   Multiple Vulnerabilities in BIND
 
ISC BIND 8 contains buffer overflow in transaction signature (TSIG) handling code  
 
BugtraqID: 2302   ISC Bind 8 Transaction Signatures Buffer Overflow Vulnerability
 
RFC2535   Domain Name System Security Extensions
 
RFC2845   Secret Key Transaction Authentication for DNS (TSIG)
 
ISS Advisory 72   Remote Vulnerabilities in BIND versions 4 and 8
 
NAI Advisory: 047   Windows NT Logon Denial of Service
 
 
Version appeared: 2.5 

Privacy Policy |  Copyright Info