Close Menu
trendyfii.comtrendyfii.com

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Prince Andrew latest: MPs ‘pushing hard’ to open inquiry into Royal Lodge rent deal

    October 23, 2025

    Sterlin Harjo on ‘The Lowdown’ — Showrunner Interview

    October 23, 2025

    Today’s NYT Mini Crossword Answers for Oct. 23

    October 23, 2025
    Facebook X (Twitter) Instagram
    Trending
    • Prince Andrew latest: MPs ‘pushing hard’ to open inquiry into Royal Lodge rent deal
    • Sterlin Harjo on ‘The Lowdown’ — Showrunner Interview
    • Today’s NYT Mini Crossword Answers for Oct. 23
    • 13 Best Slip-On Shoes for Travel
    • A Timeline of White House Renovations Through the Years
    • US sanctions Russian oil companies after failed Putin talks
    • Bodycam video shows arrest of ICE agent in Miami
    • Wood burners linked to 2,500 deaths a year in the UK, analysis finds | Air pollution
    Facebook X (Twitter) Instagram Pinterest Vimeo
    trendyfii.comtrendyfii.com
    • Home
    • World News
    • Travel & Culture
    • Lifestyle Tips
    • UK Updates
    • US & Canada
    • Tech Trends
      • Health & Wellness
      • Entertainment
    trendyfii.comtrendyfii.com
    Home»Tech Trends»Cache poisoning vulnerabilities found in 2 DNS resolving apps
    Tech Trends

    Cache poisoning vulnerabilities found in 2 DNS resolving apps

    techmanager291@gmail.comBy techmanager291@gmail.comOctober 23, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Cache poisoning vulnerabilities found in 2 DNS resolving apps
    Share
    Facebook Twitter LinkedIn Pinterest Email

    “In specific circumstances, due to a weakness in the Pseudo Random Number Generator (PRNG) that is used, it is possible for an attacker to predict the source port and query ID that BIND will use,” BIND developers wrote in Wednesday’s disclosure. “BIND can be tricked into caching attacker responses, if the spoofing is successful.”

    CVE-2025-40778 also raises the possibility of reviving cache poisoning attacks.

    “Under certain circumstances, BIND is too lenient when accepting records from answers, allowing an attacker to inject forged data into the cache,” the developers explained. “Forged records can be injected into cache during a query, which can potentially affect resolution of future queries.”

    Even in such cases, the resulting fallout would be significantly more limited than the scenario envisioned by Kaminsky. One reason for that is that authoritative servers themselves aren’t vulnerable. Further, as noted here and here by Red Hat, various other cache poisoning countermeasures remain intact. They include DNSSEC, a protection that requires DNS records to be digitally signed. Additional measures come in the form of rate limiting and server firewalling, which are considered best practices.

    “Because exploitation is non-trivial, requires network-level spoofing and precise timing, and only affects cache integrity without server compromise, the vulnerability is considered Important rather than Critical,” Red Hat wrote in its disclosure of CVE-2025-40780.

    The vulnerabilities nonetheless have the potential to cause harm in some organizations. Patches for all three should be installed as soon as practicable.

    apps Cache DNS poisoning resolving vulnerabilities
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous Article24 Best Things to Do in Hong Kong
    Next Article Takehiro Hira to Receive THR’s Trailblazer Award at Tokyo Film Fest
    techmanager291@gmail.com
    • Website

    Related Posts

    Tech Trends

    Today’s NYT Mini Crossword Answers for Oct. 23

    October 23, 2025
    Tech Trends

    Elon Musk Wants ‘Strong Influence’ Over the ‘Robot Army’ He’s Building

    October 23, 2025
    Tech Trends

    Amazon claims the headline isn’t robots taking jobs as it reveals new cost-cutting robots

    October 23, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Supporters Cheer After Indigenous Land Defenders Avoid Jail

    October 20, 20251 Views

    Government looks utterly weak on Maccabi Tel Aviv fan ban – and Tories have smelt blood | Politics News

    October 19, 20251 Views

    The 24 best movies for streaming and screaming (October 2025)

    October 19, 20251 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    World News

    Why Liverpool are feeling the effects of Trent Alexander-Arnold’s absence this season

    techmanager291@gmail.comOctober 19, 2025
    UK Updates

    The return of ‘Tescopoly’? How Britain’s biggest retailer dominates everyday life | Tesco

    techmanager291@gmail.comOctober 19, 2025
    US & Canada

    Beto O’Rourke ‘proud’ to join Austin ‘No Kings’ protest

    techmanager291@gmail.comOctober 19, 2025

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Why Liverpool are feeling the effects of Trent Alexander-Arnold’s absence this season

    October 19, 20250 Views

    The return of ‘Tescopoly’? How Britain’s biggest retailer dominates everyday life | Tesco

    October 19, 20250 Views

    Beto O’Rourke ‘proud’ to join Austin ‘No Kings’ protest

    October 19, 20250 Views
    Our Picks

    Prince Andrew latest: MPs ‘pushing hard’ to open inquiry into Royal Lodge rent deal

    October 23, 2025

    Sterlin Harjo on ‘The Lowdown’ — Showrunner Interview

    October 23, 2025

    Today’s NYT Mini Crossword Answers for Oct. 23

    October 23, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact us
    • Disclaimer
    • Privacy Policy
    • Terms and Conditions
    © 2025 trendyfii. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.