[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] Is BIND Secure?



On 20 Feb 2003 at 11:30, aljuhani wrote:

> Hello List.
> 
> Just need some input from experienced administrators on this list regarding the article below.
> Is it true that BIND is no longer safe or just another way to make money.
> 
> http://techupdate.zdnet.co.uk/story/0,,t507-s2129897,00.html
> 
> Kind Regards,
> aljuhani@xxxxxxxxx

The article you quote is an advert for djbdns, not a description of 
any sort of vulnerablilty.

What do you want to know about bind ?

Is the cobalt version vulnerable to a particle exploit ?

Well if you install all the updates, you will have a fully patched 
bind 8.

But this is still vulnerable to dns cache poisoning.  Really you 
should update to bind 9.

    DNS Cache Poisoning - The Next Generation
    by Joe Stewart, GCIH (jstewart @ lurhq.com)
    http://www.securityfocus.com/guest/17905

Regards


Ian
--