Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-2925
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-2925

Description:
The default access control lists (ACL) in ISC BIND 9.4.0, 9.4.1, and 9.5.0a1 through 9.5.0a5 do not set the allow-recursion and allow-query-cache ACLs, which allows remote attackers to make recursive queries and query the cache.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/35571

ST
  1018441

SLACKWARE
  http://www.slackware.org/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.521385

SAID
  Secunia Advisory: SA26227
  Secunia Advisory: SA26509
  Secunia Advisory: SA26515
  Secunia Advisory: SA26236

OPENPKG
  http://www.openpkg.com/security/advisories/OpenPKG-SA-2007.022.html

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDKSA-2007:149

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200708-13.xml

CONFIRM
  http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=623903
  http://www.isc.org/index.pl?/sw/bind/bind-security.php

BID
  25076


Return to the previous page.