Re: BIND Security Advisory (CVE-2009-0025; Severity: Low)

2009-01-10 Thread Rob Austein
At Thu, 8 Jan 2009 09:10:42 -0500, David Coulthart wrote: > > Would someone be able to provide some more details as to what > particular configurations of BIND this affects? My interpretation is > it only impacts recursive nameservers that have DNSSEC validation > enabled. And not even all

Re: BIND Security Advisory (CVE-2009-0025; Severity: Low)

2009-01-09 Thread Steve Shockley
On 1/8/2009 9:10 AM, David Coulthart wrote: Would someone be able to provide some more details as to what particular configurations of BIND this affects? My interpretation is it only impacts recursive nameservers that have DNSSEC validation enabled. Speaking in terms of BIND config options, the d

Re: BIND Security Advisory (CVE-2009-0025; Severity: Low)

2009-01-08 Thread David Coulthart
On Jan 7, 2009, at 2:32 PM, rob_aust...@isc.org wrote: Internet Systems Consortium Security Advisory. BIND: EVP_VerifyFinal() and DSA_do_verify() return checks. 7 January 2009 Versions affected: BIND 9.0 (all versions) BIND 9

BIND Security Advisory (CVE-2009-0025; Severity: Low)

2009-01-07 Thread Rob_Austein
Internet Systems Consortium Security Advisory. BIND: EVP_VerifyFinal() and DSA_do_verify() return checks. 7 January 2009 Versions affected: BIND 9.0 (all versions) BIND 9.1 (all versions) BIND 9.2 (all versions)