From owner-freebsd-security@FreeBSD.ORG Fri Jul 8 01:38:23 2011 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id BF1CD106566B for ; Fri, 8 Jul 2011 01:38:23 +0000 (UTC) (envelope-from glen.j.barber@gmail.com) Received: from mail-iw0-f182.google.com (mail-iw0-f182.google.com [209.85.214.182]) by mx1.freebsd.org (Postfix) with ESMTP id 85A588FC0A for ; Fri, 8 Jul 2011 01:38:23 +0000 (UTC) Received: by iwr19 with SMTP id 19so1785714iwr.13 for ; Thu, 07 Jul 2011 18:38:23 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=message-id:date:from:user-agent:mime-version:to:cc:subject :references:in-reply-to:x-enigmail-version:content-type :content-transfer-encoding; bh=YYcugux+a5q4BUHE8rEQLDfYXg3YR6X0dvvv/9CWwQo=; b=TcFY//1EQWQwpCLmjmwymssBvUqInKX361hVXvgXfOPISUvSpJDq6jARj5i9UREMfQ Fv6NH3JS0En8PSjojWw3fzhYmd+eLjncLCtW00Gbqaa2yE0nX3dIMFF7W299NelawiLi vI5so2VD/Cmix2QdYfBBdkJstArkz7GqsYJew= Received: by 10.42.156.1 with SMTP id x1mr1631416icw.226.1310087787190; Thu, 07 Jul 2011 18:16:27 -0700 (PDT) Received: from schism.local (c-76-124-49-145.hsd1.pa.comcast.net [76.124.49.145]) by mx.google.com with ESMTPS id hp8sm10362480icc.11.2011.07.07.18.16.24 (version=SSLv3 cipher=OTHER); Thu, 07 Jul 2011 18:16:24 -0700 (PDT) Message-ID: <4E165A67.6020609@gmail.com> Date: Thu, 07 Jul 2011 21:16:23 -0400 From: Glen Barber User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.6; rv:5.0) Gecko/20110624 Thunderbird/5.0 MIME-Version: 1.0 To: Michael Scheidell References: <201105280928.p4S9SxXg051018@freefall.freebsd.org> <4DF79534.6060507@acsalaska.net> <4E1652AF.8000000@secnap.com> In-Reply-To: <4E1652AF.8000000@secnap.com> X-Enigmail-Version: 1.2 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 7bit Cc: freebsd-security@freebsd.org Subject: Re: new bind security bug? Re: [FreeBSD-Announce] FreeBSD Security Advisory FreeBSD-SA-11:02.bind X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 08 Jul 2011 01:38:23 -0000 On 7/7/11 8:43 PM, Michael Scheidell wrote: > > > > The high-severity vulnerability in many versions of the BIND software > has the effect of causing the BIND server to exit when it receives a > specially formatted packet. The ISC said that although it isn't aware of > any public exploits for the bug, it still recommends that organizations > upgrade to one of the newer versions of BIND, which include > 9.6-ESV-R4-P3, 9.7.3-P3 or 9.8.0-P4. > See: http://svnweb.freebsd.org/base?view=revision&revision=223815 Regards, -- Glen Barber