Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security > Server related

November 17th, 2011, 12:47 GMT · By Eduard Kovacs

Zero-Day Vulnerability Causes BIND 9 Server Crash

SHARE:

Adjust text size:


DNS servers are crashing due to a zero-day
Enlarge picture
Organizations worldwide began reporting their DNS servers that relied on BIND keep crashing while the nameservers were performing recursive queries.

The Internet System Consortium (ICS) claims that multiple versions were affected by an unidentified network event. Sophos names it a “denial of service vulnerability being exploited in-the-wild.”

“An as-yet unidentified network event caused BIND 9 resolvers to cache an invalid record, subsequent queries for which could crash the resolvers with an assertion failure,” states their description of the issue.

“ISC is working on determining the ultimate cause by which a record with this particular inconsistency is cached. At this time we are making available a patch which makes named recover gracefully from the inconsistency, preventing the abnormal exit.”

The patch consists of two components, one that prevents the cache from returning inconsistent data and one that makes sure that if an inconsistent answer is detected, prevents the crash of the name daemon.

“When a client query is handled, the code which processes the response to the client has to ask the cache for the records for the name that is being queried. The first component of the patch prevents the cache from returning the inconsistent data. The second component prevents named from crashing if it detects that it has been given an inconsistent answer of this nature.”

Due to the fact that there is no known workaround for the issue, customers are recommended to immediately upgrade the application.

The threat is serious since BIND is one of the most widely utilized pieces of DNS open source software that implements Domain Name System (DNS) protocols for the internet.

The software distribution consists of three main parts: a DNS server, a DNS resolver library and testing tools. These components provide all the software needed to “to ask name service questions and to answer such questions.”

BIND 9.8.1
- P1 for Linux is available for download here
BIND 9.8.1 - P1 for Windows is available for download here

FILED UNDER:
BIND
DNS server
Zero-day

TELL US WHAT YOU THINK:

1,567 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Brazilian ISPs Hit by DNS Poisoning Attacks

Phishing Drops 8% Since Google De-Indexed Co.Cc Domains

Alureon Trojan Uses Steganography Techniques

Malware Spreads as Browser Update

The Pirate Bay Yawns at the Sight of Censorship

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM