Close Menu
trendyfii.comtrendyfii.com

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Former Labour minister ran ‘shoddy and inadequate’ Covid testing firm, court hears | UK news

    October 23, 2025

    Jake Paul Reveals He’s Sparring W/ Shakur Stevenson To Prep For Gervonta Davis

    October 23, 2025

    4 Ways Magnesium Supports Weight Loss

    October 23, 2025
    Facebook X (Twitter) Instagram
    Trending
    • Former Labour minister ran ‘shoddy and inadequate’ Covid testing firm, court hears | UK news
    • Jake Paul Reveals He’s Sparring W/ Shakur Stevenson To Prep For Gervonta Davis
    • 4 Ways Magnesium Supports Weight Loss
    • Best Internet Providers in Denver, Colorado
    • Andaz Tokyo Toranomon Hills review: How to use Hyatt points to book
    • Israel’s West Bank annexation moves threatening Gaza peace deal, says Marco Rubio – Middle East live | Israel
    • Fire rages across residential area in the Philippines
    • Thames Water given lowest one star rating for repeated sewage spills
    Facebook X (Twitter) Instagram Pinterest Vimeo
    trendyfii.comtrendyfii.com
    • Home
    • World News
    • Travel & Culture
    • Lifestyle Tips
    • UK Updates
    • US & Canada
    • Tech Trends
      • Health & Wellness
      • Entertainment
    trendyfii.comtrendyfii.com
    Home»Tech Trends»Cache poisoning vulnerabilities found in 2 DNS resolving apps
    Tech Trends

    Cache poisoning vulnerabilities found in 2 DNS resolving apps

    techmanager291@gmail.comBy techmanager291@gmail.comOctober 23, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Cache poisoning vulnerabilities found in 2 DNS resolving apps
    Share
    Facebook Twitter LinkedIn Pinterest Email

    “In specific circumstances, due to a weakness in the Pseudo Random Number Generator (PRNG) that is used, it is possible for an attacker to predict the source port and query ID that BIND will use,” BIND developers wrote in Wednesday’s disclosure. “BIND can be tricked into caching attacker responses, if the spoofing is successful.”

    CVE-2025-40778 also raises the possibility of reviving cache poisoning attacks.

    “Under certain circumstances, BIND is too lenient when accepting records from answers, allowing an attacker to inject forged data into the cache,” the developers explained. “Forged records can be injected into cache during a query, which can potentially affect resolution of future queries.”

    Even in such cases, the resulting fallout would be significantly more limited than the scenario envisioned by Kaminsky. One reason for that is that authoritative servers themselves aren’t vulnerable. Further, as noted here and here by Red Hat, various other cache poisoning countermeasures remain intact. They include DNSSEC, a protection that requires DNS records to be digitally signed. Additional measures come in the form of rate limiting and server firewalling, which are considered best practices.

    “Because exploitation is non-trivial, requires network-level spoofing and precise timing, and only affects cache integrity without server compromise, the vulnerability is considered Important rather than Critical,” Red Hat wrote in its disclosure of CVE-2025-40780.

    The vulnerabilities nonetheless have the potential to cause harm in some organizations. Patches for all three should be installed as soon as practicable.

    apps Cache DNS poisoning resolving vulnerabilities
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous Article24 Best Things to Do in Hong Kong
    Next Article Takehiro Hira to Receive THR’s Trailblazer Award at Tokyo Film Fest
    techmanager291@gmail.com
    • Website

    Related Posts

    Tech Trends

    Best Internet Providers in Denver, Colorado

    October 23, 2025
    Tech Trends

    This ‘Privacy Browser’ Has Dangerous Hidden Features

    October 23, 2025
    Tech Trends

    Musk wants to get rid of Tesla’s robotaxi babysitters ‘by the end of the year’

    October 23, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Supporters Cheer After Indigenous Land Defenders Avoid Jail

    October 20, 20251 Views

    Government looks utterly weak on Maccabi Tel Aviv fan ban – and Tories have smelt blood | Politics News

    October 19, 20251 Views

    The 24 best movies for streaming and screaming (October 2025)

    October 19, 20251 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    World News

    Why Liverpool are feeling the effects of Trent Alexander-Arnold’s absence this season

    techmanager291@gmail.comOctober 19, 2025
    UK Updates

    The return of ‘Tescopoly’? How Britain’s biggest retailer dominates everyday life | Tesco

    techmanager291@gmail.comOctober 19, 2025
    US & Canada

    Beto O’Rourke ‘proud’ to join Austin ‘No Kings’ protest

    techmanager291@gmail.comOctober 19, 2025

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Why Liverpool are feeling the effects of Trent Alexander-Arnold’s absence this season

    October 19, 20250 Views

    The return of ‘Tescopoly’? How Britain’s biggest retailer dominates everyday life | Tesco

    October 19, 20250 Views

    Beto O’Rourke ‘proud’ to join Austin ‘No Kings’ protest

    October 19, 20250 Views
    Our Picks

    Former Labour minister ran ‘shoddy and inadequate’ Covid testing firm, court hears | UK news

    October 23, 2025

    Jake Paul Reveals He’s Sparring W/ Shakur Stevenson To Prep For Gervonta Davis

    October 23, 2025

    4 Ways Magnesium Supports Weight Loss

    October 23, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact us
    • Disclaimer
    • Privacy Policy
    • Terms and Conditions
    © 2025 trendyfii. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.