Secunia Security Advisory - Nortel has acknowledged a vulnerability in Business Communications Manager, which can be exploited by malicious people to poison the DNS cache.
8bc66cc082637d45ebd55bee9bf596ec6e36cc0c633d3d8c1223337dece3d250
----------------------------------------------------------------------
Want a new job?
http://secunia.com/secunia_security_specialist/
http://secunia.com/hardcore_disassembler_and_reverse_engineer/
----------------------------------------------------------------------
TITLE:
Nortel Business Communications Manager BIND DNS Cache Poisoning
SECUNIA ADVISORY ID:
SA31588
VERIFY ADVISORY:
http://secunia.com/advisories/31588/
CRITICAL:
Moderately critical
IMPACT:
Spoofing
WHERE:
>From remote
OPERATING SYSTEM:
Nortel Business Communications Manager 4.x
http://secunia.com/product/15341/
DESCRIPTION:
Nortel has acknowledged a vulnerability in Business Communications
Manager, which can be exploited by malicious people to poison the DNS
cache.
For more information:
SA30973
SOLUTION:
Reportedly, a BCM specific patch will be released to address the
issue.
ORIGINAL ADVISORY:
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=762152
OTHER REFERENCES:
SA30973:
http://secunia.com/advisories/30973/
----------------------------------------------------------------------
About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.
Subscribe:
http://secunia.com/secunia_security_advisories/
Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/
Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.
----------------------------------------------------------------------