Re: BIND Security Advisory (CVE-2009-0025; Severity: Low)

2009-01-10 Thread Rob Austein
At Thu, 8 Jan 2009 09:10:42 -0500, David Coulthart wrote: Would someone be able to provide some more details as to what particular configurations of BIND this affects? My interpretation is it only impacts recursive nameservers that have DNSSEC validation enabled. And not even all of

Re: BIND Security Advisory (CVE-2009-0025; Severity: Low)

2009-01-09 Thread Steve Shockley
On 1/8/2009 9:10 AM, David Coulthart wrote: Would someone be able to provide some more details as to what particular configurations of BIND this affects? My interpretation is it only impacts recursive nameservers that have DNSSEC validation enabled. Speaking in terms of BIND config options, the

BIND Security Advisory (CVE-2009-0025; Severity: Low)

2009-01-07 Thread Rob_Austein
Internet Systems Consortium Security Advisory. BIND: EVP_VerifyFinal() and DSA_do_verify() return checks. 7 January 2009 Versions affected: BIND 9.0 (all versions) BIND 9.1 (all versions) BIND 9.2 (all versions)