acv
16 years ago
wonders what Kaminsky's big DNS poisoning bug is.
acv says
16 years ago
It has to do with the source ports of requests being predictable.
acv asks
16 years ago
could it be as simple as spamming a bunch of gratuitous DNS response?
acv says
16 years ago
The CERT advisory, MS08-020 and MS08-037 seem to indicate this is spoofing with predictable source ports / TXID values.
立即下載
acv says
16 years ago
However MS08-037 also makes references to DNS cache logic changes so there might be something subtle in there.
bite! says
16 years ago
:'-(