|
|
ru.linux- RU.LINUX --------------------------------------------------------------------- From : Andrey Melnikov 2:5030/1340.116 31 Jan 2001 19:51:34 To : All Subject : bind --------------------------------------------------------------------------------
Отцы уже обновили свой %subj% до 8.2.3 или 9.1.0 ?
Name: "tsig bug"
Versions affected: 8.2, 8.2-P1, 8.2.1, 8.2.2-P1, 8.2.2-P2,
8.2.2-P3, 8.2.2-P4, 8.2.2-P5, 8.2.2-P6, 8.2.2-P7, and all 8.2.3-betas
Severity: CRITICAL
Exploitable: Remotely
Type: Access possible.
Description:
It is possible to overflow a buffer handling TSIG signed queries,
thereby obtaining access to the system.
Workarounds:
None.
Active Exploits:
Exploits for this bug exist.
http://www.isc.org/products/BIND/bind-security.html
RedHat, ManDrake, DEBian, SlackWare, Trstix, Connectiva, Caldera, Suse уже
вывалили updates.
Andrey aka TEMHOTA-RIPN
[Team Linux] [Team Inet] [Team IRC 4ever] [Team Windows Mu$t DiE]
[Team TEMHOTA - Дрyг молодежи!] [Team CuBeR PuNkS] [TEAM Спать] [TEAM hAtE]
--- GoldED+/LNX 1.1.4.3
* Origin: Powered by SlackWare Linux (2:5030/1340.116)
Вернуться к списку тем, сортированных по: возрастание даты уменьшение даты тема автор
Архивное /ru.linux/52203a783616.html, оценка из 5, голосов 10
|