Summary
The remote host is missing an update to the system as announced in the referenced advisory FreeBSD-SA-07:02.bind.asc
Solution
Upgrade your system to the appropriate stable release or security branch dated after the correction date
https://secure1.securityspace.com/smysecure/catid.html?in=FreeBSD-SA-07:02.bind.asc
Insight
BIND 9 is an implementation of the Domain Name System (DNS) protocols.
The named(8) daemon is an Internet domain name server. DNS Security Extensions (DNSSEC) are additional protocol options that add authentication and integrity to the DNS protocols.
A type * (ANY) query response containing multiple RRsets can trigger an assertion failure.
Certain recursive queries can cause the nameserver to crash by using memory which has already been freed.
Severity
Classification
-
CVE CVE-2007-0493 -
CVSS Base Score: 7.8
AV:N/AC:L/Au:N/C:N/I:N/A:C
Related Vulnerabilities