.:[ packet storm ]:.
                       
preserving full disclosure
preserving full disclosure

 ///  File Name:MDVSA-2009-304.txt
Description:
Mandriva Linux Security Advisory 2009-304 - Unspecified vulnerability in ISC BIND 9.4 before 9.4.3-P4, 9.5 before 9.5.2-P1, 9.6 before 9.6.1-P2, 9.7 beta before 9.7.0b3, and 9.0.x through 9.3.x with DNSSEC validation enabled and checking disabled (CD), allows remote attackers to conduct DNS cache poisoning attacks via additional sections in a response sent for resolution of a recursive client query, which is not properly handled when the response is processed at the same time as requesting DNSSEC records (DO. Additionally BIND has been upgraded to the latest point release or closest supported version by ISC.
Author:Mandriva
Homepage:http://www.mandriva.com/security/
File Size:7035
Related CVE(s):CVE-2009-4022
Last Modified:Nov 27 16:19:05 2009
MD5 Checksum:c8fbf818bbf185917fccf79da8519a38

 .:. Back