hey I hope you all upgraded your DNS

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • buyandsell
    Confirmed User
    • May 2008
    • 692

    #1

    hey I hope you all upgraded your DNS

    http://www.isc.org/index.pl?/sw/bind/bind-security.php
  • mrwilson
    mrwilson 2.0
    • Jul 2007
    • 5122

    #2
    Thanks for the heads up

    Comment

    • nico-t
      emperor of my world
      • Aug 2004
      • 29901

      #3
      i dont understand, what is this.. too technical to even bother to read it

      Comment

      • TheDoc
        Too lazy to set a custom title
        • Jul 2001
        • 13827

        #4
        Originally posted by nico-t
        i dont understand, what is this.. too technical to even bother to read it
        You can read the Wired down version of what's going on here.
        ~TheDoc - ICQ7765825
        It's all disambiguation

        Comment

        • fluffygrrl
          So Fucking Banned
          • May 2006
          • 2187

          #5
          O brother.

          This is a rare day indeed.

          Comment

          • fris
            I have to go potty
            • Aug 2002
            • 55826

            #6
            thanks for the update spanno
            Since 1999: 69 Adult Industry awards for Best Hosting Company and professional excellence.


            My Newest Theme

            Comment

            • Adult Creative Labs
              Confirmed User
              • Jul 2008
              • 221

              #7
              I've been reading about this for a month now. It is truly worrying.
              .



              ICQ: 498299527
              Email: sales -at- adultcreativelabs.com

              Comment

              • qxm
                Confirmed User
                • Jul 2006
                • 5970

                #8
                It would be nice to hear about security measures being taken from major hosting companies about this !!!

                Come on WEBAIR, MOJO, PHAT, ISPRIME, PR and all other I forgot to mention !!!....

                ICQ: 266990876

                Comment

                • jollyperv
                  Confirmed User
                  • Nov 2001
                  • 3927

                  #9
                  Originally posted by qxm
                  It would be nice to hear about security measures being taken from major hosting companies about this !!!

                  Come on WEBAIR, MOJO, PHAT, ISPRIME, PR and all other I forgot to mention !!!....
                  Yep, would be nice to hear

                  Comment

                  • Manowar
                    jellyfish  
                    • Dec 2003
                    • 71528

                    #10
                    sounds pretty fucked

                    Comment

                    • Iron Fist
                      Too lazy to set a custom title
                      • Dec 2006
                      • 23400

                      #11
                      The world fall apart yet? No?? Okay then.... keep moving folks...
                      i like waffles

                      Comment

                      • GrouchyAdmin
                        Now choke yourself!
                        • Apr 2006
                        • 12085

                        #12
                        Bind security holes? What's next? a problem with sendmail!?

                        Comment

                        • Evil E
                          Confirmed User
                          • Apr 2005
                          • 3201

                          #13
                          Originally posted by GrouchyAdmin
                          Bind security holes? What's next? a problem with sendmail!?
                          LOL that made me laugh, but this doesn't have to do with BIND but with the way DNS was designed as the others name daemons are also vulnerable.


                          A girl once told me "Give me 8 inches and make it HURT".

                          So, I fucked her twice and hit her with a brick.

                          Comment

                          • Evil E
                            Confirmed User
                            • Apr 2005
                            • 3201

                            #14
                            Originally posted by qxm
                            It would be nice to hear about security measures being taken from major hosting companies about this !!!

                            Come on WEBAIR, MOJO, PHAT, ISPRIME, PR and all other I forgot to mention !!!....
                            Patches have been out for about a month. If it wasn't patched then your hosting co probably knows less than you about anything.


                            A girl once told me "Give me 8 inches and make it HURT".

                            So, I fucked her twice and hit her with a brick.

                            Comment

                            • SmokeyTheBear
                              ►SouthOfHeaven
                              • Jun 2004
                              • 28609

                              #15
                              Originally posted by sharphead
                              The world fall apart yet? No?? Okay then.... keep moving folks...
                              you would wait for the world to fall apart before fixing it ?
                              hatisblack at yahoo.com

                              Comment

                              • Iron Fist
                                Too lazy to set a custom title
                                • Dec 2006
                                • 23400

                                #16
                                Originally posted by SmokeyTheBear
                                you would wait for the world to fall apart before fixing it ?
                                i like waffles

                                Comment

                                • ne0
                                  Confirmed User
                                  • May 2006
                                  • 781

                                  #17
                                  Hello,
                                  As I see some of our clients sent us questions about this issue, guided by this particular thread.
                                  Just want you to know that we actually have this covered for a while.
                                  This vulnerability is not new and is the reply to many of those interesting '302 errors' webmasters experiences sometimes.
                                  While dnssec is the reply for this problem this isn't something widely spread.
                                  What most sysadmins are doing right now, is raise the range of ports used to reply the queries making the guessing harder.
                                  This happens for a while and exploits for this have been running the internet for about two years or so.
                                  hai2u

                                  Comment

                                  • spooky181
                                    Confirmed User
                                    • Jul 2003
                                    • 2951

                                    #18
                                    Originally posted by SplitNeo
                                    Hello,
                                    As I see some of our clients sent us questions about this issue, guided by this particular thread.
                                    Just want you to know that we actually have this covered for a while.
                                    This vulnerability is not new and is the reply to many of those interesting '302 errors' webmasters experiences sometimes.
                                    While dnssec is the reply for this problem this isn't something widely spread.
                                    What most sysadmins are doing right now, is raise the range of ports used to reply the queries making the guessing harder.
                                    This happens for a while and exploits for this have been running the internet for about two years or so.
                                    Thanks, one of the many reasons I am with you guys....

                                    Comment

                                    • rhcp011235
                                      Confirmed User
                                      • Sep 2007
                                      • 538

                                      #19
                                      ISPRIME doesnt use bind. Thus no security issues

                                      NEXT!
                                      Skype rhcp011235 | Cell Phone 212.812.9043 | Email [email protected]

                                      Comment

                                      • ne0
                                        Confirmed User
                                        • May 2006
                                        • 781

                                        #20
                                        Just that it's not only bind
                                        Any caching server that is open to recursive queries is vulnerable.
                                        But I'm pretty sure isprime got that covered as well
                                        hai2u

                                        Comment

                                        • DutchTeenCash
                                          I like Dutch Girls
                                          • Feb 2003
                                          • 21684

                                          #21
                                          thanks good read

                                          ICQ 16 91 547 - SKYPE dutchteencash
                                          bob AT dutchteencash DOT com
                                          ... did you see our newest Sweet Natural Girl Priscilla (18)?

                                          Comment

                                          • born4porn
                                            FUKM ALL!
                                            • Jan 2004
                                            • 38781

                                            #22
                                            thanks 4 the heads up!!

                                            Comment

                                            • WebairGerard
                                              Confirmed User
                                              • Sep 2005
                                              • 8113

                                              #23
                                              We have been aware of this vulnerability as it is not new.
                                              Webair does not use bind and this does not impact any of our clients or services.

                                              Comment

                                              • split_joel
                                                Confirmed User
                                                • Jan 2005
                                                • 2270

                                                #24
                                                It doesn't just affect bind.
                                                E-mail marketing - Automation Scripting - IP Space
                                                AIM: splitjoelp ICQ: 254759453 skype - splitjoelp 702-941-6465

                                                Comment

                                                • Los
                                                  Confirmed User
                                                  • Jul 2001
                                                  • 427

                                                  #25
                                                  lol this isnt a bug in bind this is a bug in the design of dns just about every maker has been effected.

                                                  Comment

                                                  • fris
                                                    I have to go potty
                                                    • Aug 2002
                                                    • 55826

                                                    #26
                                                    dns posining isnt a bind thing, every dns daemon has some vuln to it
                                                    Since 1999: 69 Adult Industry awards for Best Hosting Company and professional excellence.


                                                    My Newest Theme

                                                    Comment

                                                    Working...