[dns-operations] BIND Security Advisory

Anand Buddhdev anandb at ripe.net
Tue Jul 28 23:36:45 UTC 2009


On 28/7/09 23:47, Michael Graff wrote:

> A purely cache only server should not be affected. Being auth for a
> single zone would make you be vulnerable.

This implies that most caches are also vulnerable, because most typical
BIND caches are authoritative for at least the 0.0.127.in-addr.arpa
zone. Ouch.

-- 
Anand Buddhdev
RIPE NCC



More information about the dns-operations mailing list