DNS Response Issue in Cisco Content Service Switches
CVE-2003-1132

Currently unrated

What is CVE-2003-1132?

The DNS server functionality in Cisco Content Service Switch (CSS) 11000 and 11500 exhibits a flaw where, when queried for a nonexistent AAAA record, it returns an NXDOMAIN response instead of a No Error response. This behavior can be exploited by remote attackers to prompt other DNS servers to forward and cache a nonexistent AAAA record request, effectively leading to a denial of service. As a result, legitimate users may face inaccessible domains, impacting service availability.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.