Re: Another BIND vulnerability (cache poisoning)



I contacted HP support for one of my customers and got the following response:

There are 2 part to DNS.
1) Server
- The vulnerability only affects the servers and may render it "compromised", and there is a fix for this.

2) Resolver/client
- The vulnerability will not affect the clients directly and there is no fix for it.

But if your client is pointing to a server that was compromised, the client may not get the proper answers from the affected server.
>
The only fix to this is to fix the affected server or point your client to another server that is not compromised.

Regards,

Jay So HP Services


Since these systems point to a corporate DNS server (at another location and the responsibility of another department) I am not asking for the patch but HP said they had one.

At other customers, the OpenVMS systems point to DNS servers provided by their ISPs and I am checking those to see if they are patched. I am using http://www.doxpara.com/ to do the test.

As I understand the problem, once the server your system points to is patched, there is nothing more you can do. If this is not correct, please let me know.

Jeffrey Coffield
www.digitalsynergyinc.com
.



Relevant Pages

  • [REVS] Introduction to HTTP Response Splitting
    ... single HTTP request that forces the web server to form an output stream, ... one response. ... HTTP response splitting is a fairly new web application vulnerability. ... Web cache poisoning: In this form a rather larger defacement takes place ...
    (Securiteam)
  • Re: Help - administrator locked out!
    ... Second - thanks for your extremely helpful response. ... with 1 Novell server. ... I don't pretend that I'm some sort of super administrator or anything. ... I agree it's my practices that have got me into trouble in the first ...
    (microsoft.public.windows.server.general)
  • [NEWS] Cisco Content Service Switch 11000 Series DNS Negative Cache of Information Denial-of-Service
    ... respond to certain Domain Name Service (DNS) name server record requests ... Global Server Load Balancing. ... This vulnerability in CSS is documented as Cisco Bug IDs CSCdz62499 and ... formulate a response for the client. ...
    (Securiteam)
  • Re: NotificationSampleWebDav-Monitor OWA Inbox
    ... re-login or update your cookie with each response you get... ... Warning: Exiting Action with an exception: The remote server returned an ... // Create request object and assign credentials. ... Stream newStream = Request.GetRequestStream; ...
    (microsoft.public.exchange.applications)
  • Re: Prompt for Password when Printing
    ... Well I would have loved to only post once but since the server kept telling ... which greatly reduces the chance that you'll get any response at ... > take screen shots and print those. ... >> allow customers to print what they see on the screen but I only want a ...
    (microsoft.public.windows.inetexplorer.ie6.browser)

Loading