[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Sarge, Bind9 (9.2.4-1sarge3) and DNS cache poisoning..



On 07/09/2008 09:52 PM, John Elliot wrote:
Hi,

We have a couple of Sarge servers running bind9(9.2.4-1sarge3) that appear to be vulnerable to the DNS cache poisoning issue(Looks like port randomization was only introduced in bind9.3?) - As the servers cannot be upgraded at this time to etch, what is the recommended course of action? Backports and upgrade to 9.3?


There is a version of bind 9.3.4 for Sarge in backports.org, but they don't publish changelogs, so you'll have to research yourself if this bug has been fixed in their version.


Reply to: