Candidate: CVE-2012-1192 PublicDate: 2012-02-17 22:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1192 Description: The resolver in Unbound before 1.4.11 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_unbound: upstream_unbound: released (1.4.11) hardy_unbound: DNE lucid_unbound: ignored (reached end-of-life) maverick_unbound: ignored (reached end-of-life) natty_unbound: ignored (reached end-of-life) oneiric_unbound: ignored (reached end-of-life) precise_unbound: not-affected (1.4.16-1) quantal_unbound: not-affected (1.4.18-1) raring_unbound: not-affected (1.4.19-1ubuntu1) saucy_unbound: not-affected (1.4.20-1) devel_unbound: not-affected (1.4.20-1)