[原文]Kerio WinRoute Firewall before 6.0.9 uses information from PTR queries in response to A queries, which allows remote attackers to poison the DNS cache or cause a denial of service (connection loss).
WinRoute Firewall contains a flaw that may allow a malicious user to insert false information into the DNS cache. The issue is triggered when an unspecified error occurs. It is possible that the flaw may allow DNS poisoning resulting in a loss of integrity.
Upgrade to version 6.0.9 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.