CVE-2010-1689
Description
The DNS implementation in smtpsvc.dll before 6.0.2600.5949 in Microsoft Windows 2000 SP4 and earlier, Windows XP SP3 and earlier, Windows Server 2003 SP2 and earlier, Windows Server 2008 SP2 and earlier, Windows Server 2008 R2, Exchange Server 2003 SP3 and earlier, Exchange Server 2007 SP2 and earlier, and Exchange Server 2010 uses predictable transaction IDs that are formed by incrementing a previous ID by 1, which makes it easier for man-in-the-middle attackers to spoof DNS responses, a different vulnerability than CVE-2010-0024 and CVE-2010-0025.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
OS impact
Windows Affected 2 releases
| Version | Status | Fixed in |
|---|---|---|
| r2 | Affected | โ |
| - | Affected | โ |
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| microsoft | exchange_server | 2003 | |
| microsoft | exchange_server | 2007 | |
| microsoft | exchange_server | 2010 | |
References
- http://archives.neohapsis.com/archives/fulldisclosure/2010-05/0058.html
- http://securitytracker.com/id?1023939
- http://www.coresecurity.com/content/CORE-2010-0424-windows-smtp-dns-query-id-bugs
- http://www.securityfocus.com/bid/39908
- http://archives.neohapsis.com/archives/fulldisclosure/2010-05/0058.html
- http://securitytracker.com/id?1023939
- http://www.coresecurity.com/content/CORE-2010-0424-windows-smtp-dns-query-id-bugs
- http://www.securityfocus.com/bid/39908
CWEs
CWE-310
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.