![]() |
|
General software and network General OS-independent software and network questions, X11, MTA, routing, etc. |
![]() |
|
Thread Tools | Display Modes |
|
||||
![]()
An error in the DNS specifications has been discovered, and all DNS vendors have released patches.
I am doing a cvsup right now on my system, but I haven't seen the bind patches come through yet. My Ubuntu notebook is installing an updated bind now. If someone who is tracking the FreeBSD security advisories RSS could give this forum a heads-up when it hits the tree, it would be helpful. Details: http://it.slashdot.org/article.pl?sid=08/07/08/195225 http://securosis.com/2008/07/08/dan-...atch-released/
__________________
The only dumb question is a question not asked. The only dumb answer is an answer not given. |
|
|||
![]()
The person who found the problem has published a small test script on his website that determine if your ISP is vulnerable.
Curiously, the OpenBSD team haven't said a word about it.. nor have they done a patch, odd. |
|
|||
![]()
By default OpenBSD randomizes the ports used. The same randomization is done by djbdns.
The CERT advisory http://www.kb.cert.org/vuls/id/800113 contains three links to Daniel J. Bernstein web pages about DJBDNS and he is credited for the original idea of using randomized source ports. BTW according to http://cr.yp.to/djbdns/forgery.html Bernstein predicted this issue already in 2001 ![]()
__________________
You don't need to be a genius to debug a pf.conf firewall ruleset, you just need the guts to run tcpdump |
|
||||
![]()
I wonder how long it has been since something of this magatude has happened on the net :\
On a lighter note, Quote:
__________________
My Journal Thou shalt check the array bounds of all strings (indeed, all arrays), for surely where thou typest ``foo'' someone someday shall type ``supercalifragilisticexpialidocious''. |
|
|||
![]() Quote:
http://security.freebsd.org/advisori...08:06.bind.asc
__________________
I just saved a bunch of money on my car insurance by fleeing the scene of the accident! |
|
||||
![]()
thanks for the heads up
__________________
My Journal Thou shalt check the array bounds of all strings (indeed, all arrays), for surely where thou typest ``foo'' someone someday shall type ``supercalifragilisticexpialidocious''. |
|
||||
![]()
I am but I check my personal e-mail like, once every two months :\
There's a commercial on American TV for insurance that says "My inbox is exploding and I haven't had a day off since the third grade" that really comes to my mind about now +S
__________________
My Journal Thou shalt check the array bounds of all strings (indeed, all arrays), for surely where thou typest ``foo'' someone someday shall type ``supercalifragilisticexpialidocious''. |
|
|||
![]()
Seen that commercial (Peachtree TV?).. some guy is laying on her, partially.
![]() |
|
|||
![]()
I made that post the day after it was published... fear & confusion led me there.
My apologies, but I'm only human. |
|
||||
![]() Quote:
![]() |
|
||||
![]() Quote:
Again you could inform yourself by reading archives. I agree about QMail and your post in general. Actually due to lack of licenses his software was removed from the OpenBSD ports three many years ago. Now when his software is released into public domain it is ported again (so you do not have to seek any patches and do anything manually) but the ports are not committed to the port three. So I can send you zip files or look ports@open to find them. Best, OKO Last edited by Oko; 15th July 2008 at 01:56 PM. |
![]() |
Thread Tools | |
Display Modes | |
|
|
![]() |
||||
Thread | Thread Starter | Forum | Replies | Last Post |
FreeBSD 7.2 X Server 1.6 Patch | dialeight | FreeBSD Installation and Upgrading | 1 | 4th August 2009 04:25 PM |
Following Stable. Why uname does NOT show patch #6. | Greg_Morgan | OpenBSD Installation and Upgrading | 4 | 20th May 2009 06:21 AM |
patch application for usb mouse? | aesop | FreeBSD Installation and Upgrading | 1 | 17th January 2009 11:15 PM |
problem applying patch | sam-i-am | OpenBSD General | 4 | 25th July 2008 12:54 AM |
PATCH errors during portupgrade | shinjii | FreeBSD Installation and Upgrading | 4 | 23rd June 2008 02:47 AM |