July 9, 2008
Multiple DNS implementations vulnerable to cache poisoning
Vulnerability Note VU#800113
From: https://www.kb.cert.org/CERT_WEB%5Cservices%5Cvul-notes.nsf/id/800113
Quote:
An attacker with the ability to conduct a successful cache poisoning attack can cause a nameserver’s clients to contact the incorrect, and possibly malicious, hosts for particular services. Consequently, web traffic, email, and other important network data can be redirected to systems under the attacker’s control.
At least 30 vendors appear to be known vulnerable. This is a significant number. Start contacting your vendors!