[Summary] DNS problem

From: Gyula Szemenyei <szemgy_at_rkk.hu>
Date: Mon, 07 Sep 1998 12:33:25 +0200 (MET DST)

Dear Managers,

My original problem was:

> sometimes named daemon dies (first time was 2 weeks ago and now) and I
> cannot find out why.
> We are running DU 4.0b on DEC 3000/300.
> After (re)starting named, sendmail (8.9.0.beta5) and listprocessor
> (6.0c) are confused, I have to stop them and delete all queued mail.
------
Thanks for everyone who replied:

John Nebel <nebel_at_athena.csdco.com>
Martin Mokrejs <mmokrejs_at_natur.cuni.cz>
Ian Mortimer <ian_at_physics.uq.edu.au>
------
Ian Mortimer pointed out that follows:

This could be due to the DNS security bug which affects versions of
BIND prior to 4.9.7 which means the one shipped with DU 4.0b.

If that's so then someone is attempting to exploit this vulnerability
to break into your system. The good news is that DU's version of
named just dies and dumps core so they won't succeed in breaking
in that way.

The solution is to upgrade to either BIND 4.9.7 or BIND 8.1.2.
The first is the easiest quick fix because it's compatible with
the version shipped with DU (4.9.3).

You can get BIND from

   http://www.isc.org/bind.html

Your sendmail problems most likely result from the nameserver
crash.
-------
Best Regards,
     Gyula Szemenyei
     http://www.rkk.hu/~szemgy
Received on Mon Sep 07 1998 - 10:34:36 NZST

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:38 NZDT