Bugtraq mailing list archives
RE: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup
From: Mario Contestabile <marioc () computer org>
Date: Wed, 19 Apr 2006 11:56:53 -0400
Fyi, Any NT app can bypass the local hosts file using DnsQuery(...,..., DNS_QUERY_NO_HOSTS_FILE, ...); marioc () computer org http://bubbler.net/outlaw/blog -----Original Message----- From: Joachim Schipper [mailto:j.schipper () math uu nl] Sent: April 13, 2006 8:13 PM To: full-disclosure () lists grok org uk; bugtraq () securityfocus com Subject: Re: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup On Thu, Apr 13, 2006 at 06:29:15PM +0100, Dave Korn wrote:
Hey, guess what I just found out: Microsoft have deliberately sabotaged their DNS client's hosts table lookup functionality.
(...) I'd try to block (Windows Media Player) it in my hosts file.
Microsoft DNS client special-cases 'go.microsoft.com' and refuses to look it up in the hosts file.
I'm running fully up-to-date Windows XP SP2. I don't have any pfw software that could conceivably be interfering, and the windows firewall is running with more-or-less the default settings (I've only added a couple of exceptions, no other changes). I don't think this is a
false positive.
Current thread:
- [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup Dave Korn (Apr 14)
- Re: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup Brandon S. Allbery KF8NH (Apr 14)
- Re: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup Stan Bubrouski (Apr 14)
- Re: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup Jamie Riden (Apr 19)
- Re: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup A . L . M . Buxey (Apr 14)
- Re: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup dumdidumdideldey (Apr 14)
- Re: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup Joachim Schipper (Apr 14)
- RE: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup Mario Contestabile (Apr 20)
- RE: Microsoft DNS resolver: deliberately sabotaged hosts-file lookup Nick FitzGerald (Apr 20)
- Re: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup Duncan Simpson (Apr 25)
- RE: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup Mario Contestabile (Apr 20)
- Re: [Full-disclosure] Microsoft DNS resolver: deliberately sabotaged hosts-file lookup Brandon S. Allbery KF8NH (Apr 14)