GSD-2022-1004950

    Dashboard / Vulnerabilities / GSD-2022-1004950

    GSD-2022-1004950

    Published: 1 Aug 2022Last Modified: 14 Mar 2023

    Summary: Redirection of DNS domain in eth.link domain name version 2022-07-31 and later

    Details: The eth.link domain name was taken over by a new, unknown, entity on 2022-07-31 ("eth.link has expired. Was this your domain name and would like to renew it? Click here to login to your Uniregistry.com account eth.link"). The domain currently shows a parked "for sale" page, but an attacker that buys it (or the current owner) could easily serve DNS queries for the domain and subdomains (of which there were many). All client software and existing links pointing at eth.link or subdomains can be attacked via spoofing and impersonation of web sites with valid certificates/etc resulting in easy social engineering.

    Affected packages

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    GSD-2022-1004950 | CVE-DB