acv
2008-07-09T04:14:13.000Z
wonders what Kaminsky's big DNS poisoning bug is.
acv says
2008-07-09T04:15:24.000Z
It has to do with the source ports of requests being predictable.
acv asks
2008-07-09T04:16:55.000Z
could it be as simple as spamming a bunch of gratuitous DNS response?
acv says
2008-07-09T04:28:29.000Z
The CERT advisory, MS08-020 and MS08-037 seem to indicate this is spoofing with predictable source ports / TXID values.
立即下載
acv says
2008-07-09T04:29:03.000Z
However MS08-037 also makes references to DNS cache logic changes so there might be something subtle in there.
bite! says
2008-07-09T04:36:31.000Z
:'-(