From owner-freebsd-stable Fri Mar 23 14:59:36 2001 Delivered-To: freebsd-stable@freebsd.org Received: from peitho.fxp.org (peitho.fxp.org [209.26.95.40]) by hub.freebsd.org (Postfix) with ESMTP id 4DCA837B718 for ; Fri, 23 Mar 2001 14:59:32 -0800 (PST) (envelope-from cdf.lists@fxp.org) Received: by peitho.fxp.org (Postfix, from userid 1501) id E23CF1360C; Fri, 23 Mar 2001 17:59:31 -0500 (EST) Date: Fri, 23 Mar 2001 17:59:31 -0500 From: Chris Faulhaber To: Rich Morin Cc: freebsd-stable@FreeBSD.ORG Subject: Re: upgrading to bind-8.2.3 Message-ID: <20010323175931.A4007@peitho.fxp.org> Mail-Followup-To: Chris Faulhaber , Rich Morin , freebsd-stable@FreeBSD.ORG References: Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-md5; protocol="application/pgp-signature"; boundary="x+6KMIRAuhnl3hBn" Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: ; from rdm@cfcl.com on Fri, Mar 23, 2001 at 02:46:39PM -0800 Sender: owner-freebsd-stable@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG --x+6KMIRAuhnl3hBn Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Fri, Mar 23, 2001 at 02:46:39PM -0800, Rich Morin wrote: > At 2:51 PM -0800 3/23/01, Kent Stewart wrote: > >I thought that was what is already built into 4-stable right now. I > >did a named -v and 8.2.3-REL pops up. >=20 > Sorry; I'm neglected to say that I'm running a (fairly vanilla) > FreeBSD 4.2 release: >=20 > % named -v > named 8.2.3-T6B Mon Nov 20 11:27:49 GMT 2000 > jkh@bento.FreeBSD.org:/usr/obj/usr/src/usr.sbin/named >=20 Which means you are quite vulnerable. A security advisory was issued almost two months ago covering this problem (which includes workarounds and solutions :) ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:18.bind.asc --=20 Chris D. Faulhaber - jedgar@fxp.org - jedgar@FreeBSD.org -------------------------------------------------------- FreeBSD: The Power To Serve - http://www.FreeBSD.org --x+6KMIRAuhnl3hBn Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.4 (FreeBSD) Comment: FreeBSD: The Power To Serve iEYEARECAAYFAjq71VMACgkQObaG4P6BelBYSQCfZwSeRojFL7EO6EQQp2+SooM9 znwAn1NBKuDfsLLJ4TmTPOKV+IfPILZk =8RQW -----END PGP SIGNATURE----- --x+6KMIRAuhnl3hBn-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-stable" in the body of the message