| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.55221 |
| Category: | FreeBSD Local Security Checks |
| Title: | FreeBSD Ports: bind |
| Summary: | FreeBSD Ports: bind |
| Description: | The remote host is missing an update to the system as announced in the referenced advisory. The following package is affected: bind CVE-2005-0033 Buffer overflow in the code for recursion and glue fetching in BIND 8.4.4 and 8.4.5 allows remote attackers to cause a denial of service (crash) via queries that trigger the overflow in the q_usedns array that tracks nameservers and addresses. Solution: Update your system with the appropriate patches or software upgrades. http://www.uniras.gov.uk/niscc/docs/al-20050125-00059.html?lang=en http://www.isc.org/sw/bind/bind-security.php http://www.vuxml.org/freebsd/947f4b14-1c89-11da-bc01-000e0c2e438a.html |
| Cross-Ref: |
BugTraq ID: 12364 Common Vulnerability Exposure (CVE) ID: CVE-2005-0033 http://www.uniras.gov.uk/niscc/docs/al-20050125-00059.html SCO Security Bulletin: SCOSA-2006.1 ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2006.1/SCOSA-2006.1.txt CERT/CC vulnerability note: VU#327633 http://www.kb.cert.org/vuls/id/327633 http://www.securityfocus.com/bid/12364 http://securitytracker.com/id?1012996 http://secunia.com/advisories/14009 http://secunia.com/advisories/18291 XForce ISS Database: bind-qusedns-bo(19063) http://xforce.iss.net/xforce/xfdb/19063 |
| Copyright | Copyright (c) 2005 E-Soft Inc. http://www.securityspace.com |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|