Re: CVE-2021-44228 - impact of hardening through iptables - Malicious payload still possible through DNS response?

Daniel Savard <[email protected]>
Newsgroups gmane.comp.jakarta.log4j.user
Message-ID <CAHDsjKtBvfCqBkK8ra-1Ebcw14tQeRjfJmJSpGqijmNGj6VmDQ@mail.gmail.com>
Le mar. 14 déc. 2021 à 17:02, Matt Sicker <[email protected]> a écrit :

> JNDI supports DNS as one of its protocols, but I've never confirmed
> that you can load anything malicious through it. I've assumed it's
> possible, though. I don't know if whitelisting DNS servers is
> sufficient due to recursive DNS resolution in the protocol itself.
>
>
My understanding is that DNS calls to an authoritative DNS held by an
adverse party can be used to leak information from the targeted system
rather than loading any executable class.

Regards,
-----------------
Daniel Savard
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.