HZGN.COM
welcome to my space
X
Feng Shui | Graphic Design | Cosmetics | Causes and Organizations | Regulatory Compliance | Gadgets and Gizmos | Computer Forensics | Tools and Equipment | Related articles
Welcome to:hzgn.com
Search:  
NAVIGATION: Home >>

DoS Hole Has Some DNS Servers In a BIND

Published by: jane 2008-11-20

A weakness discovered Tuesday in Domain Name System (DNS) servers running ISC BIND (define) 9 prior to 9.2.1 forced officials to issue an advisory to potential denial-of-service attacks.

The memo sent out by the Computer Emergency Response Team Coordination Center (CERT) (define) said the threat could be widespread considering that the BIND DNS Server is used on the vast majority of name serving machines on the Internet.

The problem could even impact non-BIND servers since the normal operation of most services on the Internet, "depends on the proper operation of DNS servers," CERT said.

In its advisory, CERT said, "a vulnerability exists in version 9 of BIND that allows remote attackers to shut down BIND servers. An attacker can cause the shutdown by sending a specific DNS packet designed to trigger an internal consistency check. However, this vulnerability will not allow an attacker to execute arbitrary code or write data to arbitrary locations in memory."

The researchers said the weakness does not seem to affect ISC (Internet Software Consortium) BIND versions 8 and 4 or any other non-BIND server software like IRIX.

According to the advisory, the internal consistency check that triggers the shutdown occurs when the rdataset parameter to the dns_message_findtype() function in message.c is not NULL as expected. The condition causes the code to assert an error message and call abort to shut down the BIND server. CERT said it is also possible to accidentally trigger this vulnerability using common queries found in routine operation, especially queries originating from SMTP servers.

Security Update 2008-05 : DNS Flaw Finally Fixed | The Apple Blog::
OS X Server is the most likely candidate for actually running BIND (the process A gaping hole still exists in OS X 10.3 and below you will need to do a bit of
http://theappleblog.com/2008/08/01/security-update-2008-05-dns-flaw-finally-fixed/
HOME
The vulnerability was found through routine bug analysis. ISC said it strongly recommends that all BIND 9 users upgrade immediately to 9.2.1.

A quick check of server manufacturers and software makers found that servers from Caldera Open Unix, Hewlett-Packard, MandrakeSoft Linux 8.x, Red Hat Linux versions 7.1, 7.2, and 7.3 and SuSE, Inc. Linux.

ICANN | DNS Security Workshop Real-Time Captioning | 12 July 2005::
Well, there are some weaknesses in the DNS, and I show you some of the details. So looking at attacks of DNS, there is a denial of service attack to servers.
http://www.icann.org/en/meetings/luxembourg/captioning-dnssec-workshop-12jul05.htm
HOME
DNS Recursion - Open DNS Servers::
The BIND name server can simultaneously act as a master for some zones, a slave someone just directly DOS your website, why do they need to DOS your DNS?
http://www.webmasterworld.com/forum23/4488.htm
HOME
Each of the vendors said they were aware of the problem and were either currently working on producing errata packages or had them available for download.

At press time, Nortel Networks said it is reviewing its portfolio to determine if any products are affected by the vulnerability noted in CERT Advisory.

The Berkeley Internet Name Domain package was originally written at University of California at Berkeley as a graduate student project under a grant from the US Defense Advanced Research Projects Administration (DARPA). Versions of BIND through 4.8.3 were maintained by the Computer Systems Research Group (CSRG) at UC Berkeley. The package maps URLs to IP addresses.

The protocol server software controls major components of the Domain Name System including: a Domain Name System server (named); a Domain Name System resolver library; and tools for verifying the proper operation of the DNS server.

The resolver library included in the BIND distribution provides the standard APIs for translation between domain names and Internet addresses and is intended to be linked with applications requiring name service.

This is not the first time CERT has had to issue a warning about vulnerabilities in BIND's architecture. CERT released an advisory detailing four security holes in older versions of the BIND in January 2001, which urged all users of BIND software to upgrade to BIND 4.9.8, BIND 8.2.3 or BIND 9.1. Since 1997, CERT has published 12 documents detailing vulnerabilities in the software, lending itself to the reputation of sometimes being called the Buggy Internet Name Daemon.

CERT has posted a copy of the advisory describing the current problem at: http://www.kb.cert.org/vuls/id/739123.


Holes Still Linger in Yahoo Messenger
Lindows Showcases Download Feature

You are looking at:hzgn.com's DoS Hole Has Some DNS Servers In a BIND, click hzgn.com to home
#If you have any other info about this subject , Please add it free.#
Your name:
E-mail:
Telphone:

Your comments:


If you have any other info about DoS Hole Has Some DNS Servers In a BIND , Please add it free.
About us |Contact us |Advertisement |Site map |Exchange links
Copyright© 2008hzgn.com All Rights Reserved