CVE-2011-0414 and Bind 9.7.3

John Hascall john at iastate.edu
Sat Mar 5 13:24:10 UTC 2011


> > How sure are we that 9.7.3 fixes CVE-2011-0414?
> Pretty darn sure.

> > Because we are seeing behaviour that looks like CVE-2011-0414
> > on our 9.7.3 server...
> Please send details to bind9-bugs at isc.org.

It was just as we saw with 9.7.2, the last thing in the
log is an IXFR and then boom no answering queries.

We did an emergency upgrade to 9.8 so we won't have any
more details about 9.7.3, sorry.

John



More information about the bind-users mailing list