Willing and not afraid to challenge the status quo.

New DoS Vulnerability Affects All Versions of BIND 9

written by Ruan
at 9:35 am
on July 29, 2009
in Open Source, Security, Technology
no comments

ISC is reporting that a new, remotely exploitable vulnerability has been found in all versions of BIND 9. A specially crafted dynamic update packet will make BIND die with an assertion error. There is an exploit in the wild and there are no access control workarounds. Red Hat claims that the exploit does not affect BIND servers that do not allow dynamic updates, but the ISC post refutes that. This is a high-priority vulnerability and DNS operators will want to upgrade BIND to the latest patch level.

Via: Slashdot


comments

Leave a Comment...

You must be logged in to post a comment.


about this

Ruan is a resolute technophile that is currently devoted to the professional practice of Information Technology Management. In his free time Ruan pursues various interests including the study of Information Security practices and the exploration of visual culture through contemporary photography and communication design.


fineprint
entire contents © 2010 Ruan Müller