---------------------------------------------------------------------
Red Hat, Inc. Security Advisory
Synopsis: Security problems in bind
Advisory ID: RHSA-1999:054-01
Issue date: 1999-11-11
Updated on: 1999-11-11
Keywords: bind named NXT solinger fdmax
Cross references: http://www.isc.org/products/BIND/bind-security-19991108.html ---------------------------------------------------------------------
1. Topic:
Several security vulnerabilities exist in the DNS server, 'bind'.
2. Relevant releases/architectures:
Red Hat Linux 4.x, all platforms
Red Hat Linux 5.x, all platforms
Red Hat Linux 6.x, all platforms
3. Problem description:
Various vulnerabilities exist in previous versions of
bind:
- A bug in the processing of NXT records can theoretically allow
a remote attacker to gain access to the DNS server as the
user running bind (by default, root). This vulnerability
does not affect the bind packages that shipped with
Red Hat Linux 4.2 and Red Hat Linux 5.2.
- Several remote denial-of-service attacks are possible; by
using abnormal TCP options, causing the DNS server to use many
file descriptors, or using special SIG records, it may be possible
to crash the DNS server.
It is recommended that all users of bind upgrade to the latest
packages.
Thanks go to ISC for providing the updated packages.
4. Solution:
For each RPM for your particular architecture, run:
rpm -Uvh where filename is the name of the RPM.
You can verify each package with the following command:
rpm --checksig
If you only wish to verify that each package has not been corrupted or
tampered with, examine only the md5sum with the following command:
rpm --checksig --nogpg
10. References:
--
----------------------------------------------------------------------
Please refer to the information about this list as well as general
information about Linux security at http://www.aoy.com/Linux/Security. ----------------------------------------------------------------------