Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




Security Incidents mailing list archives

Re: Continued DoS seen on BIND8.2.2p7
From: Valdis Kletnieks <Valdis.Kletnieks () VT EDU>
Date: Sun, 4 Mar 2001 11:36:13 -0500

On Sat, 03 Mar 2001 18:52:03 MST, Ryan Russell <ryan () SECURITYFOCUS COM>  said:
I don't believe that helps much.  The exploit is supposed to be possible
over UDP as well.

Note the exploit works over UDP, and *EVEN IF* you have 'allow-query'
restrictions in place that would block an actual query from the site.
The TSIG checking code is called *before* the allow-query ACL's are
checked.

                                Valdis Kletnieks
                                Operating Systems Analyst
                                Virginia Tech


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]