Description: Microsoft ISA Server has been found vulnerable to a Denial of Service condition in the DNS intrusion detection filter.
By sending a malicious DNS query it is possible to cause the DNS intrusion detection filter to crash.
When the DNS intrusion detection filter has been crashed no DNS queries will be forwarded to the DNS server.
This could potentially cause your internet services to fail if all of your DNS servers are blocked this way. This could stop web and email traffic to your site until you have restarted the ISA service.
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.