Loading...
Loading...
PyDNS (aka python-dns) before 2.3.1-5 in Debian GNU/Linux does not use random source ports for DNS requests and does not use random transaction IDs for DNS retries, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-4099.
September 18, 2008
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2008-4126
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.