The default configuration of Name Service Cache Daemon (nscd) in Caldera OpenLinux 3.1 and 3.1.1 uses cached PTR records instead of consulting the authoritative DNS server for the A record, which could make it easier for remote attackers to bypass applications that restrict access based on host names.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/4399 | Patch Vendor Advisory |
http://www.iss.net/security_center/static/8745.php | Vendor Advisory |
http://www.calderasystems.com/support/security/advisories/CSSA-2002-013.0.txt |
Configurations
Information
Published : 2002-08-11 21:00
Updated : 2008-09-05 13:28
NVD link : CVE-2002-0511
Mitre link : CVE-2002-0511
JSON object : View
CWE
Products Affected
nscd
- nscd