{"id":98911,"date":"2021-01-21T14:42:14","date_gmt":"2021-01-21T12:42:14","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/dnspooq-sem-novyh-uyazvimostej-v-dnsmasq"},"modified":"2021-01-21T14:42:14","modified_gmt":"2021-01-21T12:42:14","slug":"dnspooq-sem-novyh-uyazvimostej-v-dnsmasq","status":"publish","type":"post","link":"https:\/\/prohoster.info\/it\/blog\/novosti-interneta\/dnspooq-sem-novyh-uyazvimostej-v-dnsmasq","title":{"rendered":"DNSpooq - sette nuove vulnerabilit\u00e0 in dnsmasq","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Gli esperti dei laboratori di ricerca JSOF hanno segnalato sette nuove vulnerabilit\u00e0 nel server DNS\/DHCP dnsmasq. Il server dnsmasq \u00e8 molto popolare ed \u00e8 utilizzato per impostazione predefinita in molte distribuzioni Linux, cos\u00ec come in apparecchiature di rete Cisco, Ubiquiti e altro. Le vulnerabilit\u00e0 Dnspooq comprendono l'avvelenamento della cache DNS e l'esecuzione remota di codice. Le vulnerabilit\u00e0 sono state corrette in dnsmasq 2.83.<\/p>\n<p>Nel 2008, il noto ricercatore in sicurezza Dan Kaminsky ha scoperto e rivelato un difetto fondamentale nel meccanismo DNS su Internet. Kaminsky ha dimostrato che gli aggressori possono alterare gli indirizzi <a class=\"wpil_keyword_link\" href=\"https:\/\/prohoster.info\/it\/domain\/\"   title=\"domini\" data-wpil-keyword-link=\"linked\"  data-wpil-monitor-id=\"3158\">domini<\/a> e rubare i dati. Da quel momento in poi \u00e8 diventato noto come &laquo;Attacco di Kaminski&raquo;.<\/p>\n<p>Il DNS \u00e8 stato considerato un protocollo insicuro per decenni, sebbene si supponga che garantisca un certo livello di integrit\u00e0. Proprio per questo motivo si fa ancora grande affidamento su di esso. Nel frattempo, sono stati sviluppati meccanismi per migliorare la sicurezza del protocollo DNS originale. Questi meccanismi includono HTTPS, HSTS, DNSSEC e altre iniziative. Tuttavia, anche con tutti questi meccanismi, l'intercettazione del DNS rimane un attacco pericoloso nel 2021. Gran parte di Internet fa ancora affidamento sul DNS come nel 2008 e rimane vulnerabile a questo tipo di attacchi.<\/p>\n<p>Vulnerabilit\u00e0 di avvelenamento della cache DNSpooq:<br \/>\nCVE-2020-25686, CVE-2020-25684, CVE-2020-25685. Queste vulnerabilit\u00e0 sono simili agli attacchi SAD DNS, recentemente segnalati da ricercatori dell'Universit\u00e0 della California e dell'Universit\u00e0 di Tsinghua. Le vulnerabilit\u00e0 SAD DNS e DNSpooq possono anche essere combinate per facilitare ulteriormente gli attacchi. Sono state segnalate anche ulteriori attacchi con conseguenze poco chiare grazie agli sforzi congiunti delle universit\u00e0 (Poison Over Troubled Forwarders e altri).<br \/>\nLe vulnerabilit\u00e0 operano riducendo l'entropia. A causa dell'uso di un hash debole per identificare le richieste DNS e di una corrispondenza imprecisa della richiesta alla risposta, l'entropia pu\u00f2 essere ridotta significativamente e bisogna indovinare solo ~19 bit, rendendo possibile l'avvelenamento della cache. Il modo in cui dnsmasq gestisce i record CNAME consente di falsificare la catena dei record CNAME e di avvelenare efficacemente fino a 9 record DNS contemporaneamente.<\/p>\n<p>Vulnerabilit\u00e0 di buffer overflow: CVE-2020-25687, CVE-2020-25683, CVE-2020-25682, CVE-2020-25681. Tutte e quattro le vulnerabilit\u00e0 segnalate sono presenti nel codice con implementazione di DNSSEC e si manifestano solo quando il controllo tramite DNSSEC \u00e8 abilitato nelle impostazioni.<\/p>\n<p>Fonte: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"http:\/\/www.linux.org.ru\/news\/security\/16121275\">linux.org.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0421\u043f\u0435\u0446\u0438\u0430\u043b\u0438\u0441\u0442\u044b \u0438\u0437 JSOF research labs \u0441\u043e\u043e\u0431\u0449\u0438\u043b\u0438 \u043e \u0441\u0435\u043c\u0438 \u043d\u043e\u0432\u044b\u0445 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044f\u0445 \u0432 DNS\/DHCP \u0441\u0435\u0440\u0432\u0435\u0440\u0435 dnsmasq. \u0421\u0435\u0440\u0432\u0435\u0440 dnsmasq \u0432\u0435\u0441\u044c\u043c\u0430 \u043f\u043e\u043f\u0443\u043b\u044f\u0440\u0435\u043d \u0438 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u0435\u0442\u0441\u044f \u043f\u043e \u0443\u043c\u043e\u043b\u0447\u0430\u043d\u0438\u044e \u0432\u043e \u043c\u043d\u043e\u0433\u0438\u0445 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u0430\u0445 linux, \u0430 \u0442\u0430\u043a\u0436\u0435 \u0432 \u0441\u0435\u0442\u0435\u0432\u043e\u043c \u043e\u0431\u043e\u0440\u0443\u0434\u043e\u0432\u0430\u043d\u0438\u0438 Cisco, Ubiquiti \u0438 \u043f\u0440\u043e\u0447\u0438\u0445. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 Dnspooq \u0432\u043a\u043b\u044e\u0447\u0430\u044e\u0442 \u0432 \u0441\u0435\u0431\u044f \u043e\u0442\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0435 DNS-\u043a\u044d\u0448\u0430, \u0430 \u0442\u0430\u043a\u0436\u0435 \u0443\u0434\u0430\u043b\u0435\u043d\u043d\u043e\u0435 \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u0435 \u043a\u043e\u0434\u0430. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u0438\u0441\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u044b \u0432 dnsmasq 2.83. \u0412 2008 \u0433\u043e\u0434\u0443 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-98911","post","type-post","status-publish","format-standard","hentry","category-novosti-interneta"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 4.9.10 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0421\u043f\u0435\u0446\u0438\u0430\u043b\u0438\u0441\u0442\u044b \u0438\u0437 JSOF research labs \u0441\u043e\u043e\u0431\u0449\u0438\u043b\u0438 \u043e \u0441\u0435\u043c\u0438 \u043d\u043e\u0432\u044b\u0445 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044f\u0445 \u0432 DNS\/DHCP \u0441\u0435\u0440\u0432\u0435\u0440\u0435 dnsmasq. \u0421\u0435\u0440\u0432\u0435\u0440 dnsmasq \u0432\u0435\u0441\u044c\u043c\u0430 \u043f\u043e\u043f\u0443\u043b\u044f\u0440\u0435\u043d \u0438 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u0435\u0442\u0441\u044f \u043f\u043e \u0443\u043c\u043e\u043b\u0447\u0430\u043d\u0438\u044e \u0432\u043e \u043c\u043d\u043e\u0433\u0438\u0445 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u0430\u0445 linux, \u0430 \u0442\u0430\u043a\u0436\u0435 \u0432 \u0441\u0435\u0442\u0435\u0432\u043e\u043c \u043e\u0431\u043e\u0440\u0443\u0434\u043e\u0432\u0430\u043d\u0438\u0438 Cisco, Ubiquiti \u0438 \u043f\u0440\u043e\u0447\u0438\u0445. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 Dnspooq \u0432\u043a\u043b\u044e\u0447\u0430\u044e\u0442 \u0432 \u0441\u0435\u0431\u044f \u043e\u0442\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0435 DNS-\u043a\u044d\u0448\u0430, \u0430 \u0442\u0430\u043a\u0436\u0435 \u0443\u0434\u0430\u043b\u0435\u043d\u043d\u043e\u0435 \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u0435 \u043a\u043e\u0434\u0430. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u0438\u0441\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u044b \u0432 dnsmasq 2.83. \u0412 2008 \u0433\u043e\u0434\u0443\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/it\/blog\/novosti-interneta\/dnspooq-sem-novyh-uyazvimostej-v-dnsmasq\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 4.9.10\" \/>\n\t\t<meta property=\"og:locale\" content=\"it_IT\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47DNSpooq \u2014 \u0441\u0435\u043c\u044c \u043d\u043e\u0432\u044b\u0445 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 \u0432 dnsmasq | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0421\u043f\u0435\u0446\u0438\u0430\u043b\u0438\u0441\u0442\u044b \u0438\u0437 JSOF research labs \u0441\u043e\u043e\u0431\u0449\u0438\u043b\u0438 \u043e \u0441\u0435\u043c\u0438 \u043d\u043e\u0432\u044b\u0445 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044f\u0445 \u0432 DNS\/DHCP \u0441\u0435\u0440\u0432\u0435\u0440\u0435 dnsmasq. \u0421\u0435\u0440\u0432\u0435\u0440 dnsmasq \u0432\u0435\u0441\u044c\u043c\u0430 \u043f\u043e\u043f\u0443\u043b\u044f\u0440\u0435\u043d \u0438 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u0435\u0442\u0441\u044f \u043f\u043e \u0443\u043c\u043e\u043b\u0447\u0430\u043d\u0438\u044e \u0432\u043e \u043c\u043d\u043e\u0433\u0438\u0445 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u0430\u0445 linux, \u0430 \u0442\u0430\u043a\u0436\u0435 \u0432 \u0441\u0435\u0442\u0435\u0432\u043e\u043c \u043e\u0431\u043e\u0440\u0443\u0434\u043e\u0432\u0430\u043d\u0438\u0438 Cisco, Ubiquiti \u0438 \u043f\u0440\u043e\u0447\u0438\u0445. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 Dnspooq \u0432\u043a\u043b\u044e\u0447\u0430\u044e\u0442 \u0432 \u0441\u0435\u0431\u044f \u043e\u0442\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0435 DNS-\u043a\u044d\u0448\u0430, \u0430 \u0442\u0430\u043a\u0436\u0435 \u0443\u0434\u0430\u043b\u0435\u043d\u043d\u043e\u0435 \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u0435 \u043a\u043e\u0434\u0430. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u0438\u0441\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u044b \u0432 dnsmasq 2.83. \u0412 2008 \u0433\u043e\u0434\u0443\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/it\/blog\/novosti-interneta\/dnspooq-sem-novyh-uyazvimostej-v-dnsmasq\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2021-01-21T12:42:14+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2021-01-21T12:42:14+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47DNSpooq \u2014 sette nuove vulnerabilit\u00e0 in dnsmasq | ProHoster","description":"Gli esperti dei laboratori di ricerca JSOF hanno segnalato sette nuove vulnerabilit\u00e0 nel server DNS\/DHCP dnsmasq. Il server dnsmasq \u00e8 molto popolare ed \u00e8 usato di default in molte distribuzioni Linux, oltre che in attrezzature di rete Cisco, Ubiquiti e altro. Le vulnerabilit\u00e0 Dnspooq comprendono l'avvelenamento della cache DNS e l'esecuzione remota di codice. Le vulnerabilit\u00e0 sono state corrette in dnsmasq 2.83. Nel 2008,","canonical_url":"https:\/\/prohoster.info\/it\/blog\/novosti-interneta\/dnspooq-sem-novyh-uyazvimostej-v-dnsmasq","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"it_IT","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47DNSpooq \u2014 \u0441\u0435\u043c\u044c \u043d\u043e\u0432\u044b\u0445 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 \u0432 dnsmasq | ProHoster","og:description":"\u0421\u043f\u0435\u0446\u0438\u0430\u043b\u0438\u0441\u0442\u044b \u0438\u0437 JSOF research labs \u0441\u043e\u043e\u0431\u0449\u0438\u043b\u0438 \u043e \u0441\u0435\u043c\u0438 \u043d\u043e\u0432\u044b\u0445 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044f\u0445 \u0432 DNS\/DHCP \u0441\u0435\u0440\u0432\u0435\u0440\u0435 dnsmasq. \u0421\u0435\u0440\u0432\u0435\u0440 dnsmasq \u0432\u0435\u0441\u044c\u043c\u0430 \u043f\u043e\u043f\u0443\u043b\u044f\u0440\u0435\u043d \u0438 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u0435\u0442\u0441\u044f \u043f\u043e \u0443\u043c\u043e\u043b\u0447\u0430\u043d\u0438\u044e \u0432\u043e \u043c\u043d\u043e\u0433\u0438\u0445 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u0430\u0445 linux, \u0430 \u0442\u0430\u043a\u0436\u0435 \u0432 \u0441\u0435\u0442\u0435\u0432\u043e\u043c \u043e\u0431\u043e\u0440\u0443\u0434\u043e\u0432\u0430\u043d\u0438\u0438 Cisco, Ubiquiti \u0438 \u043f\u0440\u043e\u0447\u0438\u0445. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 Dnspooq \u0432\u043a\u043b\u044e\u0447\u0430\u044e\u0442 \u0432 \u0441\u0435\u0431\u044f \u043e\u0442\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0435 DNS-\u043a\u044d\u0448\u0430, \u0430 \u0442\u0430\u043a\u0436\u0435 \u0443\u0434\u0430\u043b\u0435\u043d\u043d\u043e\u0435 \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u0435 \u043a\u043e\u0434\u0430. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u0438\u0441\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u044b \u0432 dnsmasq 2.83. \u0412 2008 \u0433\u043e\u0434\u0443","og:url":"https:\/\/prohoster.info\/it\/blog\/novosti-interneta\/dnspooq-sem-novyh-uyazvimostej-v-dnsmasq","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2021-01-21T12:42:14+00:00","article:modified_time":"2021-01-21T12:42:14+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"98911","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 09:57:26","updated":"2026-02-11 11:12:04"},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts\/98911","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/comments?post=98911"}],"version-history":[{"count":1,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts\/98911\/revisions"}],"predecessor-version":[{"id":160551,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts\/98911\/revisions\/160551"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/media?parent=98911"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/categories?post=98911"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/tags?post=98911"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}