Here is a Microsoft security vulnerability that deals with Windows DNS service cache poisoning.
From Microsoft:
Executive Summary
This important security update resolves a privately reported vulnerability. This spoofing vulnerability exists in Windows DNS Servers and could allow an attacker to send specially crafted responses to DNS requests, thereby spoofing or redirecting Internet traffic from legitimate locations.
This is an important security update for all supported editions of Microsoft Windows 2000 Server and Windows Server 2003. For more information, see the subsection, Affected and Non-Affected Software, in this section.
This security update addresses the vulnerability by increasing the randomness of DNS transaction IDs. For more information about the vulnerability, see the Frequently Asked Questions (FAQ) subsection for the specific vulnerability entry under the next section, Vulnerability Information.
Recommendation: Microsoft recommends that customers apply the update at the earliest opportunity.
Tags: Microsoft Security, Microsoft Security Vulnerability, Windows DNS Cache Poisoning





























