Bugtraq mailing list archives

Re: CERT Advisory CA-99-14 Multiple Vulnerabilities in BIND


From: solar () FALSE COM (Solar Designer)
Date: Fri, 12 Nov 1999 23:43:08 +0300


Hello,

course, recommend upgrading.  In addition, we recommend running your
nameserver as non-root and chrooted (I know setting this up is non-trivial --
it'll be much, much easier in BINDv9).

While we're on the topic, there's a patch for running BIND 4.9.7 as
non-root and chrooted, as well as instructions on setting up the
jail, at:

        http://www.openwall.com/bind/

Signed,
Solar Designer


Current thread: