FS#15717 - [bind] Dynamic Update DoS

Attached to Project: Arch Linux
Opened by Roman Kyrylych (Romashka) - Wednesday, 29 July 2009, 07:16 GMT
Last edited by Kevin Piche (kpiche) - Tuesday, 15 September 2009, 00:57 GMT
Task Type Bug Report
Category Security
Status Closed
Assigned To Kevin Piche (kpiche)
Architecture All
Severity High
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 0
Private No

Details

Description:

BIND denial of service (server crash) caused by receipt of a specific remote dynamic update message.

https://www.isc.org/node/474


Additional info:

The exploit is public. Please upgrade immediately to 9.6.1-P1:
http://ftp.isc.org/isc/bind9/9.6.1-P1/bind-9.6.1-P1.tar.gz
This task depends upon

Closed by  Kevin Piche (kpiche)
Tuesday, 15 September 2009, 00:57 GMT
Reason for closing:  Fixed
Comment by Thomas Bächler (brain0) - Thursday, 30 July 2009, 00:14 GMT
I took the liberty of updating bind for Kevin, as this is rather high priority. Please verify that it works.

Loading...