Red Hat Security Advisory: Security problems in bind

Nov 11, 1999, 20:59 (0 Talkback[s])
Date: Thu, 11 Nov 1999 15:35:15 -0500
From: Bill Nottingham <<a href="">>

Red Hat, Inc. Security Advisory

Synopsis: Security problems in bind
Advisory ID: RHSA-1999:054-01
Issue date: 1999-11-11
Updated on: 1999-11-11
Keywords: bind named NXT solinger fdmax
Cross references:

1. Topic:

Several security vulnerabilities exist in the DNS server, 'bind'.

2. Relevant releases/architectures:

Red Hat Linux 4.x, all platforms
Red Hat Linux 5.x, all platforms
Red Hat Linux 6.x, all platforms

3. Problem description:

Various vulnerabilities exist in previous versions of bind:

- A bug in the processing of NXT records can theoretically allow a remote attacker to gain access to the DNS server as the user running bind (by default, root). This vulnerability does not affect the bind packages that shipped with Red Hat Linux 4.2 and Red Hat Linux 5.2.
- Several remote denial-of-service attacks are possible; by using abnormal TCP options, causing the DNS server to use many file descriptors, or using special SIG records, it may be possible to crash the DNS server.

It is recommended that all users of bind upgrade to the latest packages.

Thanks go to ISC for providing the updated packages.

4. Solution:

For each RPM for your particular architecture, run:
rpm -Uvh
where filename is the name of the RPM.

Red Hat Linux 4.x:




Source packages:

Red Hat Linux 5.x:




Source packages:

Red Hat Linux 6.x:




Source packages:

9. Verification:

MD5 sum                           Package Name

These packages are GPG signed by Red Hat, Inc. for security. Our key is available at:

You can verify each package with the following command:
rpm --checksig

If you only wish to verify that each package has not been corrupted or tampered with, examine only the md5sum with the following command:
rpm --checksig --nogpg

10. References: