Bug#386237: bind9: Security update! Please!

2006-09-06 Thread LaMont Jones
On Wed, Sep 06, 2006 at 07:33:34PM +0200, Patrik Wallstrom wrote: > On Wed, 06 Sep 2006, Micah Anderson wrote: > > Does this patch work with just plain ole 'bind' (not bind9)? That > > package also seems vulnerable... > No, there are separate packages för BIND 8. (All BIND users should > upgrade to

Bug#386237: bind9: Security update! Please!

2006-09-06 Thread Patrik Wallstrom
On Wed, 06 Sep 2006, Micah Anderson wrote: > Does this patch work with just plain ole 'bind' (not bind9)? That > package also seems vulnerable... No, there are separate packages för BIND 8. (All BIND users should upgrade to version 9 anyway.) All new versions are published at isc.org. -- patri

Bug#386237: bind9: Security update! Please!

2006-09-06 Thread Micah Anderson
Does this patch work with just plain ole 'bind' (not bind9)? That package also seems vulnerable... Micah Patrik Wallstrom wrote: > Package: bind9 > Version: 1:9.3.2-2.1 > Severity: normal > Tags: patch > > > http://www.niscc.gov.uk/niscc/docs/re-20060905-00590.pdf?lang=en > > Since most BIND

Bug#386237: bind9: Security update! Please!

2006-09-06 Thread Patrik Wallstrom
Package: bind9 Version: 1:9.3.2-2.1 Severity: normal Tags: patch http://www.niscc.gov.uk/niscc/docs/re-20060905-00590.pdf?lang=en Since most BIND installations are also open recursive resolvers, it is too easy to shoot down the named process from anywhere. Source: ftp://ftp.isc.org/isc/bind9/9