DESCRIPTION "bind" is a name server (DNS) developed by the ISC and used in many internet and intranet sites.
ISC (Internet Software Consortium) reported a remote denial of service vulnerability[2] in the BIND[1] server. A remote attacker can exploit this problem and shut down the name server.
This vulnerability only affects the 9.x versions of the server and has no other consequence besides shutting down the service.
An indication that the service has been shut down due to this problem are the following messages in the system log (/var/log/messages):
Please note that regular DNS traffic could also accidentally trigger this problem.
ISC has released BIND version 9.2.1 to address this vulnerability.
SOLUTION It is recommended that all bind users upgrade their packages. The "named" service will be automatically restarted if it was already running before the upgrade.
ADDITIONAL INSTRUCTIONS Users of Conectiva Linux version 6.0 or higher may use apt to perform upgrades of RPM packages: - add the following line to /etc/apt/sources.list if it is not there yet (you may also use linuxconf to do this):