Re: Notice: BIND Security Jul2013 CVE2013-4854

2013-07-27 Thread Jeremy C. Reed
On Sat, 27 Jul 2013, Emil Natan wrote: > How the downloads can be verified? Are there any checksums/signatures > available? Thanks. The signatures I created are available via the download server: http://ftp.isc.org/isc/bind9/9.8.5-P2/ http://ftp.isc.org/isc/bind9/9.9.3-P2/ (also available via FT

Notice: BIND Security Jul2013 CVE2013-4854

2013-07-26 Thread ISC Security Officer
IMPORTANT: The security issue described below has been confirmed by ISC to be 'in the wild' as of 18:00UTC July 26, and exploitation of this vulnerability against production servers has been reported by multiple organizations. Please be advised that immediate action is recommended. A specially cra