Re: [RHSA-1999:054-01] Security problems in bind

From: John D. Hardin (jhardinat_private)
Date: Fri Nov 12 1999 - 15:43:07 PST

  • Next message: Blue Boar: "ssh-1.2.27 remote buffer overflow - exploitable (VD#7)"

    On Fri, 12 Nov 1999, Matthew Kirkwood wrote:
    
    > On Thu, 11 Nov 1999, John D. Hardin wrote:
    >
    > > {massive snippage}
    > > >   ftp://.../bind-8.2.2_P3-0.4.2.i386.rpm
    > > -------------------------^^
    > >
    > > There was mention on Bugtraq that patch 3 broke zone transfers and
    > > that patch 4 should be used instead. Will we see that release shortly?
    >
    > There's a "patch4" in the SRPM which changes a couple of >s to >=s in
    > the zone transfer code.  I presume that that's at least the pertinent
    > part of the fix.
    
    {looks}
    
    Yes, okay, they *did* include patch4 in the bind-8.2.2_P3 RPM. Too bad
    the name is confusing...
    
    --
     John Hardin KA7OHZ   ICQ#15735746   http://www.wolfenet.com/~jhardin/
     jhardinat_private      pgpk -a finger://gonzo.wolfenet.com/jhardin
      768: 0x41EA94F5 - A3 0C 5B C2 EF 0D 2C E5  E9 BF C8 33 A7 A9 CE 76
     1024: 0xB8732E79 - 2D8C 34F4 6411 F507 136C  AF76 D822 E6E6 B873 2E79
    -----------------------------------------------------------------------
      Monty Python's Star Trek Voyager:
      A successful trans-warp experiment turns Paris and Janeway into
      newts, but they get better.
      ...wait a minute... It's already been done...
    -----------------------------------------------------------------------
       5 days until Leonid meteor shower
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 15:11:54 PDT