CWE-292 1 CVEs MITRE definition ↗

CWE-292: Trusting Self-reported DNS Name (Deprecated)

Overview

CWE-292 is a deprecated classification in the CWE framework. It remains in the catalog for historical hierarchy and CVE traceability.

Security impact
Security impact: Low / none for active exploitation (deprecated catalog entry).
Historical note
Historical note: MITRE periodically reorganizes the CWE tree; prefer current, non-deprecated weaknesses for threat modeling.

Description

This entry has been deprecated because it was a duplicate of CWE-350. All content has been transferred to CWE-350.

Related CVEs in this database

These CVEs are mapped to this weakness in this database and kept for traceability and search.

CVE Published Summary
CVE-2023-29483 2024-04-11 eventlet before 0.35.2, as used in dnspython before 2.6.0, allows remote attackers to interfere with DNS name resolution by quickly sending an invalid packet from the expected IP address and source po…

Previous names

  • Trusting Self-reported DNS Name (2013-07-17)
  • DEPRECATED (Duplicate): Trusting Self-reported DNS Name (2021-07-20)

Content submission

Name
CLASP
Date
2006-07-19
Version
Draft 3

Content modifications

Date Name Version Importance Comment
2008-09-08 CWE Content Team 1.0 updated Common_Consequences, Relationships, Other_Notes, Taxonomy_Mappings
2009-05-27 CWE Content Team 1.4 updated Demonstrative_Examples
2009-10-29 CWE Content Team 1.6 updated Observed_Examples
2010-09-27 CWE Content Team 1.10 updated Potential_Mitigations
2011-06-01 CWE Content Team 1.13 updated Common_Consequences
2012-05-11 CWE Content Team 2.2 updated Demonstrative_Examples, Relationships
2013-06-23 CWE Content Team 2.5 Critical CWE-247 and CWE-292 deprecated and merged into CWE-350 to address duplicates.
2013-07-17 CWE Content Team 2.5 updated Applicable_Platforms, Common_Consequences, Demonstrative_Examples, Description, Name, Observed_Examples, Other_Notes, Potential_Mitigations, Related_Attack_Patterns, Relationships, Taxonomy_Mappings, Time_of_Introduction, Type
2014-07-30 CWE Content Team 2.8 updated Taxonomy_Mappings
2021-03-15 CWE Content Team 4.4 updated Likelihood_of_Exploit, Taxonomy_Mappings
2021-07-20 CWE Content Team 4.5 updated Name
2023-06-29 CWE Content Team 4.12 updated Mapping_Notes
cvelogic Threat Intelligence