VDB
CVE-2008-5133
CVE-2008-5133
PUBLISHED
CVSS 5.800000190734863 MEDIUM
ipnat in IP Filter in Sun Solaris 10 and OpenSolaris before snv_96, when running on a DNS server with Network Address Translation (NAT) configured, improperly changes the source port of a packet when the destination port is the DNS port, which allows remote attackers to bypass an intended CVE-2008-1447 protection mechanism and spoof the responses to DNS queries sent by named.
EPSS 0.31% · 54.8th percentile
Risk Scores
CVSS 2.0
5.800000190734863
EPSS Score
0.31%
54.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| sun | solaris | 10, 10 |
| n/a | n/a | n/a |
| sun | opensolaris | snv_01, snv_01, snv_02 |
Exploit Intelligence
- 32625 (circl)
- ADV-2008-3129 (circl)
- solaris-ipfilter-dnsresponse-spoofing(46721) (circl)
- 245206 (circl)
Timeline
- Jul 8, 2008 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 25, 2023 EPSS Score
References
- http://secunia.com/advisories/32625 advisory
- ADV-2008-3129 vdb
- solaris-ipfilter-dnsresponse-spoofing(46721) vdb
- 245206 vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2008-5133 advisory