CVE-2015-8262

Buffalo WZR-600DHP2 devices with firmware 2.09, 2.13, and 2.16 use an improper algorithm for selecting the ID value in the header of a DNS query, which makes it easier for remote attackers to spoof responses by predicting this value.
References
Link Resource
http://www.securityfocus.com/bid/78877
https://www.kb.cert.org/vuls/id/646008 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:buffalotech:airstation_extreme_n600_firmware:2.09:*:*:*:*:*:*:*
cpe:2.3:o:buffalotech:airstation_extreme_n600_firmware:2.13:*:*:*:*:*:*:*
cpe:2.3:o:buffalotech:airstation_extreme_n600_firmware:2.16:*:*:*:*:*:*:*
cpe:2.3:h:buffalotech:airstation_extreme_n600:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2015-12-27 03:59

Updated : 2024-02-28 15:21


NVD link : CVE-2015-8262

Mitre link : CVE-2015-8262

CVE.ORG link : CVE-2015-8262


JSON object : View

Products Affected

buffalotech

  • airstation_extreme_n600_firmware
  • airstation_extreme_n600