PaulDotCom mailing list archives

BIND Dynamic Update DoS


From: dale at puredistortion.com (Dale Stirling)
Date: Wed, 29 Jul 2009 21:25:28 +1000

Time to update Bind again.

https://www.isc.org/node/474

This could well be another interesting exploit that will exist in a whole
heap of embedded systems, in the same way that the dhclient bug.

There is a good bug report at Debian:

http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=538975

RedHat has said that the issue can be fixed by not* *allowing dynamic
updates, but the ISC article (above) says otherwise.

Will test this and get back to you guys when I have played with it tomorrow
at work. If any one gets any info on this please post as it is time for
sleeping in Australia :)

Dale
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mail.pauldotcom.com/pipermail/pauldotcom/attachments/20090729/281f788d/attachment.htm 


Current thread: