This site is deprecated. Please
CLICK HERE for latest updates
Short Name |
HTTP:INFO:IDN-HOSTNAME
|
Severity |
Minor
|
Recommended |
No
|
Category |
HTTP
|
Keywords |
IDN Hostname
|
Release Date |
2005/04/19
|
Update Number |
1213
|
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+
|
HTTP: IDN Hostname
This signature detects foreign characters in a hostname. Attackers can register a domain name that uses non-Latin international characters, then use the hostname to disguise the actual URL of a malicious Web site.
Extended Description
Multiple browsers are reported prone to vulnerabilities that surround the handling of International Domain Names.
The vulnerabilities are caused by inconsistencies in how International Domain Names are processed. Reports indicate that attackers can leverage this to spoof address bars, status bars, and SSL certificate values.
Remote attackers may exploit these vulnerabilities in phishing-style attacks. Through a false sense of trust, users may voluntarily disclose sensitive information to a malicious website.
Although these vulnerabilities are reported to affect browsers, mail clients that depend on the browser to generate HTML code may also be affected.
Affected Products
- Alt_linux alt_linux_compact 2.3.0
- Alt_linux alt_linux_junior 2.3.0
- Apple mac_os_x 10.0.0
- Apple mac_os_x 10.0.0 3
- Apple mac_os_x 10.0.1
- Apple mac_os_x 10.0.2
- Apple mac_os_x 10.0.3
- Apple mac_os_x 10.0.4
- Apple mac_os_x 10.1.0
- Apple mac_os_x 10.1.1
- Apple mac_os_x 10.1.2
- Apple mac_os_x 10.1.3
- Apple mac_os_x 10.1.4
- Apple mac_os_x 10.1.5
- Apple mac_os_x 10.2.0
- Apple mac_os_x 10.2.1
- Apple mac_os_x 10.2.2
- Apple mac_os_x 10.2.3
- Apple mac_os_x 10.2.4
- Apple mac_os_x 10.2.5
- Apple mac_os_x 10.2.6
- Apple mac_os_x 10.2.7
- Apple mac_os_x 10.2.8
- Apple mac_os_x 10.3.0
- Apple mac_os_x 10.3.1
- Apple mac_os_x 10.3.2
- Apple mac_os_x 10.3.3
- Apple mac_os_x 10.3.4
- Apple mac_os_x 10.3.5
- Apple mac_os_x 10.3.6
- Apple mac_os_x 10.3.7
- Apple mac_os_x 10.3.8
- Apple mac_os_x_server 10.0.0
- Apple mac_os_x_server 10.1.0
- Apple mac_os_x_server 10.1.1
- Apple mac_os_x_server 10.1.2
- Apple mac_os_x_server 10.1.3
- Apple mac_os_x_server 10.1.4
- Apple mac_os_x_server 10.1.5
- Apple mac_os_x_server 10.2.0
- Apple mac_os_x_server 10.2.1
- Apple mac_os_x_server 10.2.2
- Apple mac_os_x_server 10.2.3
- Apple mac_os_x_server 10.2.4
- Apple mac_os_x_server 10.2.5
- Apple mac_os_x_server 10.2.6
- Apple mac_os_x_server 10.2.7
- Apple mac_os_x_server 10.2.8
- Apple mac_os_x_server 10.3.0
- Apple mac_os_x_server 10.3.1
- Apple mac_os_x_server 10.3.2
- Apple mac_os_x_server 10.3.3
- Apple mac_os_x_server 10.3.4
- Apple mac_os_x_server 10.3.5
- Apple mac_os_x_server 10.3.6
- Apple mac_os_x_server 10.3.7
- Apple mac_os_x_server 10.3.8
- Apple safari 1.0.0
- Apple safari 1.1.0
- Apple safari 1.2.0
- Apple safari 1.2.1
- Apple safari 1.2.2
- Apple safari 1.2.3
- Apple safari Beta 2
- Conectiva linux 10.0.0
- Conectiva linux 9.0.0
- Corestreet spoofstick 1.4.0
- Gentoo linux
- Hp hp-ux B.11.00
- Hp hp-ux B.11.11
- Hp hp-ux B.11.22
- Hp hp-ux B.11.23
- Kde kde 3.2.0
- Kde kde 3.2.1
- Kde kde 3.2.2
- Kde kde 3.2.3
- Kde kde 3.3.0
- Kde kde 3.3.1
- Kde kde 3.3.2
- Kde kdelibs 3.3.1
- Kde konqueror 2.1.1
- Kde konqueror 2.1.2
- Kde konqueror 2.2.1
- Kde konqueror 2.2.2
- Kde konqueror 3.0.0
- Kde konqueror 3.0.1
- Kde konqueror 3.0.2
- Kde konqueror 3.0.3
- Kde konqueror 3.0.5
- Kde konqueror 3.0.5 b
- Kde konqueror 3.1.0
- Kde konqueror 3.1.1
- Kde konqueror 3.1.2
- Kde konqueror 3.1.3
- Kde konqueror 3.1.4
- Kde konqueror 3.1.5
- Kde konqueror 3.2.1
- Kde konqueror 3.2.2 -6
- Kde konqueror 3.2.3
- Kde konqueror 3.3.0
- Kde konqueror 3.3.1
- Kde konqueror 3.3.2
- Mandriva corporate_server 3.0.0
- Mandriva corporate_server 3.0.0 X86 64
- Mandriva linux_mandrake 10.0.0
- Mandriva linux_mandrake 10.0.0 amd64
- Mandriva linux_mandrake 10.1.0
- Mandriva linux_mandrake 10.1.0 X86 64
- Mozilla browser 0.8.0
- Mozilla browser 0.9.2
- Mozilla browser 0.9.2 .1
- Mozilla browser 0.9.3
- Mozilla browser 0.9.35
- Mozilla browser 0.9.4
- Mozilla browser 0.9.4 .1
- Mozilla browser 0.9.48
- Mozilla browser 0.9.5
- Mozilla browser 0.9.6
- Mozilla browser 0.9.7
- Mozilla browser 0.9.8
- Mozilla browser 0.9.9
- Mozilla browser 1.0.0
- Mozilla browser 1.0.0 RC1
- Mozilla browser 1.0.0 RC2
- Mozilla browser 1.0.1
- Mozilla browser 1.0.2
- Mozilla browser 1.1.0
- Mozilla browser 1.1.0 Alpha
- Mozilla browser 1.1.0 Beta
- Mozilla browser 1.2.0
- Mozilla browser 1.2.0 Alpha
- Mozilla browser 1.2.0 Beta
- Mozilla browser 1.2.1
- Mozilla browser 1.3.0
- Mozilla browser 1.3.1
- Mozilla browser 1.4.0
- Mozilla browser 1.4.0 A
- Mozilla browser 1.4.0 B
- Mozilla browser 1.4.1
- Mozilla browser 1.4.2
- Mozilla browser 1.5.0
- Mozilla browser 1.5.1
- Mozilla browser 1.6.0
- Mozilla browser 1.7.0
- Mozilla browser 1.7.0 Alpha
- Mozilla browser 1.7.0 Beta
- Mozilla browser 1.7.0 Rc1
- Mozilla browser 1.7.0 Rc2
- Mozilla browser 1.7.0 Rc3
- Mozilla browser 1.7.1
- Mozilla browser 1.7.2
- Mozilla browser 1.7.3
- Mozilla browser 1.7.4
- Mozilla browser 1.7.5
- Mozilla browser 1.8.0 Alpha 1
- Mozilla browser 1.8.0 Alpha 2
- Mozilla browser 1.8.0 Alpha 3
- Mozilla browser 1.8.0 Alpha 4
- Mozilla browser M15
- Mozilla browser M16
- Mozilla camino 0.7.0 .0
- Mozilla camino 0.8.0
- Mozilla firebird 0.5.0
- Mozilla firebird 0.6.1
- Mozilla firebird 0.7.0
- Mozilla firefox 0.10.0
- Mozilla firefox 0.10.1
- Mozilla firefox 0.8.0
- Mozilla firefox 0.9.0
- Mozilla firefox 0.9.0 Rc
- Mozilla firefox 0.9.1
- Mozilla firefox 0.9.2
- Mozilla firefox 0.9.3
- Mozilla firefox 1.0.0
- Mozilla firefox Preview Release
- Mozilla thunderbird 0.6.0
- Mozilla thunderbird 0.7.0
- Mozilla thunderbird 0.7.1
- Mozilla thunderbird 0.7.2
- Mozilla thunderbird 0.7.3
- Mozilla thunderbird 0.8.0
- Mozilla thunderbird 0.9.0
- Mozilla thunderbird 1.0.0
- Netscape netscape 7.0.0
- Netscape netscape 7.1.0
- Netscape netscape 7.2.0
- Novell linux_desktop 9
- Omni_group omniweb 4.0.6
- Omni_group omniweb 4.1.0 beta11
- Omni_group omniweb 4.5.0
- Omni_group omniweb 5.0.1
- Opera_software opera_web_browser 5.0.0 2 Win32
- Opera_software opera_web_browser 5.0.0 Linux
- Opera_software opera_web_browser 5.0.0 Mac
- Opera_software opera_web_browser 5.1.0 0 Win32
- Opera_software opera_web_browser 5.1.0 1 Win32
- Opera_software opera_web_browser 5.12.0
- Opera_software opera_web_browser 5.12.0 Win32
- Opera_software opera_web_browser 6.0.0
- Opera_software opera_web_browser 6.0.0 6
- Opera_software opera_web_browser 6.0.0 .6Win32
- Opera_software opera_web_browser 6.0.0 Win32
- Opera_software opera_web_browser 6.0.1
- Opera_software opera_web_browser 6.0.1 Linux
- Opera_software opera_web_browser 6.0.1 Win32
- Opera_software opera_web_browser 6.0.2 Linux
- Opera_software opera_web_browser 6.0.2 Win32
- Opera_software opera_web_browser 6.0.3 Linux
- Opera_software opera_web_browser 6.0.3 Win32
- Opera_software opera_web_browser 6.0.4 Win32
- Opera_software opera_web_browser 6.0.5 Win32
- Opera_software opera_web_browser 6.10.0 Linux
- Opera_software opera_web_browser 7.0.0 1Win32
- Opera_software opera_web_browser 7.0.0 2Win32
- Opera_software opera_web_browser 7.0.0 3Win32
- Opera_software opera_web_browser 7.0.0 Win32
- Opera_software opera_web_browser 7.0.0 Win32 Beta 1
- Opera_software opera_web_browser 7.0.0 Win32 Beta 2
- Opera_software opera_web_browser 7.10.0
- Opera_software opera_web_browser 7.11.0
- Opera_software opera_web_browser 7.11.0 B
- Opera_software opera_web_browser 7.11.0 J
- Opera_software opera_web_browser 7.20.0
- Opera_software opera_web_browser 7.20.0 Beta 1 Build 2981
- Opera_software opera_web_browser 7.21.0
- Opera_software opera_web_browser 7.22.0
- Opera_software opera_web_browser 7.23.0
- Opera_software opera_web_browser 7.50.0
- Opera_software opera_web_browser 7.51.0
- Opera_software opera_web_browser 7.52.0
- Opera_software opera_web_browser 7.53.0
- Opera_software opera_web_browser 7.54.0
- Red_hat advanced_workstation_for_the_itanium_processor 2.1.0
- Red_hat advanced_workstation_for_the_itanium_processor 2.1.0 IA64
- Red_hat desktop 3.0.0
- Red_hat enterprise_linux_as 2.1
- Red_hat enterprise_linux_as 2.1 IA64
- Red_hat enterprise_linux_as 3
- Red_hat enterprise_linux_es 2.1
- Red_hat enterprise_linux_es 2.1 IA64
- Red_hat enterprise_linux_es 3
- Red_hat enterprise_linux_ws 2.1
- Red_hat enterprise_linux_ws 2.1 IA64
- Red_hat enterprise_linux_ws 3
- Red_hat fedora Core1
- Red_hat fedora Core2
- Red_hat fedora Core3
- Red_hat linux 7.3.0
- Red_hat linux 7.3.0 I386
- Red_hat linux 7.3.0 I686
- Red_hat linux 9.0.0 I386
- Sgi propack 3.0.0
- Suse linux 8.0.0
- Suse linux 8.0.0 i386
- Suse linux 8.1.0
- Suse linux_personal 8.2.0
- Suse linux_personal 9.0.0
- Suse linux_personal 9.0.0 X86 64
- Suse linux_personal 9.1.0
- Suse linux_personal 9.1.0 X86 64
- Suse linux_personal 9.2.0
- Suse linux_personal 9.2.0 X86 64
- Suse linux_personal 9.3.0
- Suse linux_personal 9.3.0 X86 64
- Suse suse_linux_enterprise_server 9
- Verisign i-nav
References