« Volver al listado

CVE-2006-7054

Estado: ModificadaAlta (7.8)—

The DNS module in Arkoon FAST360 UTM appliances 3.0 up to 3.0/29, 3.1 through 3.3, and 4.0 allows remote attackers to cause a denial of service (reboot) via a malformed DNS message, as demonstrated by the PROTOS DNS testing suite.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2006-7054",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 7.8,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:C",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 6.9,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2007-02-24T00:28:00.000",
  "references": [
    {
      "url": "http://secunia.com/advisories/20618",
      "tags": [
        "Patch"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.arkoon.fr/upload/alertes/33AK-2006-02-EN-1.0_FAST_DNS_DOS.pdf",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.ee.oulu.fi/research/ouspg/protos/testing/c09/dns/index.html",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2006/2217",
      "source": "cve@mitre.org"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/27004",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/20618",
      "tags": [
        "Patch"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.arkoon.fr/upload/alertes/33AK-2006-02-EN-1.0_FAST_DNS_DOS.pdf",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.ee.oulu.fi/research/ouspg/protos/testing/c09/dns/index.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2006/2217",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/27004",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The DNS module in Arkoon FAST360 UTM appliances 3.0 up to 3.0/29, 3.1 through 3.3, and 4.0 allows remote attackers to cause a denial of service (reboot) via a malformed DNS message, as demonstrated by the PROTOS DNS testing suite."
    },
    {
      "lang": "es",
      "value": "El módulo DNS en los appliances Arkoon FAST360 UTM 3.0 hasta 3.0/29, 3.1 hasta 3.3, y 4.0 permite a atacantes remotos provocar denegación de servicio (reinicio) a través de mensajes DNS malformados, como se demuestra por la suite de testeo PROTOS DNS."
    }
  ],
  "lastModified": "2026-06-16T22:34:17.860",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:arkoon:fast360:3.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "215869EF-4DD3-4B69-BBCB-24CB184C97A0"
            },
            {
              "criteria": "cpe:2.3:a:arkoon:fast360:3.0_29:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "22C1E42D-9E89-4AEE-8BB6-E20E62EC948F"
            },
            {
              "criteria": "cpe:2.3:a:arkoon:fast360:3.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "90E7CA1D-B402-40B2-A5D6-5004252C8DAA"
            },
            {
              "criteria": "cpe:2.3:a:arkoon:fast360:3.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D85EF5DE-39B5-45C7-8032-75BE6B62AF9D"
            },
            {
              "criteria": "cpe:2.3:a:arkoon:fast360:3.3:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2ACF0F9B-E989-4813-9BDE-3DBF11C603A1"
            },
            {
              "criteria": "cpe:2.3:a:arkoon:fast360:4.0_1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8EA3ABA3-92BF-462A-832F-35C1F8E01608"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}