Portal Home > Knowledgebase > Articles Database > DNS bug by Dan Kamnisky
DNS bug by Dan Kamnisky
Posted by kryptocrap, 08-17-2008, 11:20 AM |
you might have read this from the net already since last month. if not, try to google. hmmm, should we worry on this? how serious is this?
|
Posted by TheITAdvisory, 08-17-2008, 11:23 AM |
You should worry about this, it's a very serious issue.
You should also patch this vulnerability asap.
|
Posted by Xous, 08-17-2008, 05:20 PM |
As far as I know the issue only effects people operating a recursive-caching server.
|
Posted by UNIXy, 08-17-2008, 10:23 PM |
But most importantly it directly affects the people using those name caches / resolvers
Regards
|
Posted by Sheps, 08-18-2008, 08:57 AM |
Disable recursion and that should fix it until you patch it.
|
Posted by brianoz, 08-18-2008, 11:24 AM |
It's mostly ISPs that need to worry; but I'd definitely disable recursion and look at upgrading Bind sooner rather than later.
Of course, you could always run djbdns to do your recursion; DJB warned about this hole oh about 9 years ago now from memory ...
|
Add to Favourites Print this Article
Also Read