This bug was fixed in the package pdns-recursor - 3.1.4-6ubuntu1
---------------
pdns-recursor (3.1.4-6ubuntu1) hardy; urgency=low
* SECURITY UPDATE: cache poisoning via weak random number generator
(LP: #214980)
- Merge changes from 3.1.4-1+etch1:
+ debian/patches/predictable-dns-query.dpatch: Use a stronger RNG. Patch
from Debian.
+ debian/copyright: Add license of new RNG.
- References:
+ CVE-2008-1637
-- William Grant <[EMAIL PROTECTED]> Sun, 20 Apr 2008 11:10:59 +1000
** Changed in: pdns-recursor (Ubuntu Hardy)
Status: In Progress => Fix Released
--
[pdns-recursor] [CVE-2008-1637] cache poisoning vulnerability
https://bugs.launchpad.net/bugs/214980
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs