Re: [Spam?BadBits] Re: Bind 9 DoS vulnerability

2009-07-29 Thread Connie Sieh
Our automatic errata downloader has already picked it up for SL3 and SL4 . So they should be out tomorrow. -connie On Thu, 30 Jul 2009, Michael Mansour wrote: Jan Kundr=C3=A1t wrote: Michael Mansour wrote: Is this something real and to be concerned about? =20 Yes, it crashed our named inst

[Spam?BadBits] Re: Bind 9 DoS vulnerability

2009-07-29 Thread Michael Mansour
> Jan Kundrát wrote: > > Michael Mansour wrote: > >> Is this something real and to be concerned about? > > > > Yes, it crashed our named instance running on a freshly updated SL5.2. > > For reference, exploit is available from the Debian bugtracker [1]. Note > > that the iptables snippet won't wor

Re: Bind 9 DoS vulnerability

2009-07-29 Thread Phil Perry
Jan Kundrát wrote: Michael Mansour wrote: Is this something real and to be concerned about? Yes, it crashed our named instance running on a freshly updated SL5.2. For reference, exploit is available from the Debian bugtracker [1]. Note that the iptables snippet won't work on SL because it does

Re: Bind 9 DoS vulnerability

2009-07-29 Thread Jan Kundrát
Michael Mansour wrote: > Is this something real and to be concerned about? Yes, it crashed our named instance running on a freshly updated SL5.2. For reference, exploit is available from the Debian bugtracker [1]. Note that the iptables snippet won't work on SL because it doesn't have the u32 ipta

Bind 9 DoS vulnerability

2009-07-28 Thread Michael Mansour
Is this something real and to be concerned about? https://www.isc.org/node/474 Michael.