The resolver in MaraDNS before 1.3.0.7.15 and 1.4.x before 1.4.12 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.
http://secunia.com/advisories/48492
http://www.maradns.org/changelog.html
http://www.openwall.com/lists/oss-security/2012/03/20/1
http://www.openwall.com/lists/oss-security/2012/03/20/10
http://www.securitytracker.com/id?1026821
Source: MITRE
Published: 2012-03-28
Updated: 2020-08-14
Type: NVD-CWE-noinfo
Base Score: 4.3
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N
Impact Score: 2.9
Exploitability Score: 8.6
Severity: MEDIUM