ISC BIND 安全特征问题漏洞

漏洞信息详情

ISC BIND 安全特征问题漏洞

漏洞简介

ISC BIND是美国ISC公司的一套实现了DNS协议的开源软件。

ISC BIND 4版本、8版本和9.2.9版本中的DNS协议存在安全特征问题漏洞。该漏洞是源于网络系统或产品中缺少身份验证、访问控制、权限管理等安全措施。

漏洞公告

目前厂商已发布升级补丁以修复漏洞,详情请关注厂商主页:

https://www.isc.org

参考网址

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2268

来源:SECUNIA

链接:http://secunia.com/advisories/31093

来源:SECUNIA

链接:http://secunia.com/advisories/31094

来源:SECUNIA

链接:http://secunia.com/advisories/31882

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2383

来源:APPLE

链接:http://lists.apple.com/archives/security-announce//2008/Sep/msg00003.html

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2384

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2195/references

来源:CONFIRM

链接:http://www.isc.org/index.pl?/sw/bind/bind-security.php

来源:UBUNTU

链接:http://www.ubuntu.com/usn/usn-627-1

来源:CONFIRM

链接:http://www.ipcop.org/index.php?name=News&file=article&sid=40

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2030/references

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2050/references

来源:OVAL

链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9627

来源:SECUNIA

链接:http://secunia.com/advisories/31197

来源:SECUNIA

链接:http://secunia.com/advisories/31199

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2377

来源:FULLDISC

链接:http://lists.grok.org.uk/pipermail/full-disclosure/2008-August/064118.html

来源:SUNALERT

链接:http://sunsolve.sun.com/search/document.do?assetkey=1-26-239392-1

来源:CONFIRM

链接:http://www.novell.com/support/viewContent.do?externalId=7000912

来源:APPLE

链接:http://lists.apple.com/archives/security-announce//2008/Sep/msg00005.html

来源:SUNALERT

链接:http://sunsolve.sun.com/search/document.do?assetkey=1-26-240048-1

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2482

来源:SECUNIA

链接:http://secunia.com/advisories/31422

来源:BID

链接:https://www.securityfocus.com/bid/30131

来源:OVAL

链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12117

来源:CONFIRM

链接:http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=762152

来源:OVAL

链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5725

来源:AIXAPAR

链接:https://www.ibm.com/support/docview.wss?uid=isg1IZ26669

来源:AIXAPAR

链接:https://www.ibm.com/support/docview.wss?uid=isg1IZ26668

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2114/references

来源:AIXAPAR

链接:https://www.ibm.com/support/docview.wss?uid=isg1IZ26667

来源:MISC

链接:http://www.caughq.org/exploits/CAU-EX-2008-0002.txt

来源:CERT-VN

链接:http://www.kb.cert.org/vuls/id/800113

来源:AIXAPAR

链接:https://www.ibm.com/support/docview.wss?uid=isg1IZ26672

来源:AIXAPAR

链接:https://www.ibm.com/support/docview.wss?uid=isg1IZ26671

来源:AIXAPAR

链接:https://www.ibm.com/support/docview.wss?uid=isg1IZ26670

来源:SECUNIA

链接:http://secunia.com/advisories/33714

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2466

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2467

来源:SECUNIA

链接:http://secunia.com/advisories/31052

来源:CONFIRM

链接:http://www.phys.uu.nl/~rombouts/pdnsd/ChangeLog

来源:CONFIRM

链接:http://support.apple.com/kb/HT3026

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2582

来源:SECUNIA

链接:http://secunia.com/advisories/31169

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2342

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2584

来源:CONFIRM

链接:http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=494401

来源:SECUNIA

链接:http://secunia.com/advisories/30998

来源:CONFIRM

链接:https://support.citrix.com/article/CTX117991

来源:GENTOO

链接:http://security.gentoo.org/glsa/glsa-201209-25.xml

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2196/references

来源:HP

链接:http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01523520

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2334

来源:SUSE

链接:http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00006.html

来源:SECUNIA

链接:http://secunia.com/advisories/31033

来源:SECUNIA

链接:http://secunia.com/advisories/31153

来源:SECUNIA

链接:http://secunia.com/advisories/30980

来源:OPENBSD

链接:http://www.openbsd.org/errata42.html#013_bind

来源:CONFIRM

链接:http://support.citrix.com/article/CTX117991

来源:CERT

链接:http://www.us-cert.gov/cas/techalerts/TA08-260A.html

来源:SECUNIA

链接:http://secunia.com/advisories/30988

来源:SECUNIA

链接:http://secunia.com/advisories/30989

来源:BUGTRAQ

链接:http://www.securityfocus.com/archive/1/495289/100/0/threaded

来源:MISC

链接:http://www.unixwiz.net/techtips/iguide-kaminsky-dns-vuln.html

来源:OVAL

链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5917

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2010/0622

来源:FREEBSD

链接:http://security.freebsd.org/advisories/FreeBSD-SA-08:06.bind.asc

来源:SECUNIA

链接:http://secunia.com/advisories/31072

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2025/references

来源:CISCO

链接:http://www.cisco.com/en/US/products/products_security_advisory09186a00809c2168.shtml

来源:SECUNIA

链接:http://secunia.com/advisories/31065

来源:CONFIRM

链接:http://www.bluecoat.com/support/security-advisories/dns_cache_poisoning

来源:CONFIRM

链接:http://support.apple.com/kb/HT3129

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2052/references

来源:XF

链接:https://exchange.xforce.ibmcloud.com/vulnerabilities/43334

来源:CONFIRM

链接:http://www.ruby-lang.org/en/news/2008/08/08/multiple-vulnerabilities-in-ruby/

来源:REDHAT

链接:http://www.redhat.com/support/errata/RHSA-2008-0789.html

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2023/references

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2558

来源:APPLE

链接:http://lists.apple.com/archives/security-announce//2008/Sep/msg00004.html

来源:GENTOO

链接:http://security.gentoo.org/glsa/glsa-200812-17.xml

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2092/references

来源:OPENBSD

链接:http://www.openbsd.org/errata43.html#004_bind

来源:CONFIRM

链接:https://support.citrix.com/article/CTX118183

来源:CONFIRM

链接:http://www.rtpro.yamaha.co.jp/RT/FAQ/Security/VU800113.html

来源:FEDORA

链接:https://www.redhat.com/archives/fedora-package-announce/2008-July/msg00402.html

来源:CONFIRM

链接:http://support.citrix.com/article/CTX118183

来源:HP

链接:http://marc.info/?l=bugtraq&m=141879471518471&w=2

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020702

来源:MISC

链接:http://www.doxpara.com/DMK_BO2K8.ppt

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2019/references

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2549

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2029/references

来源:SECUNIA

链接:http://secunia.com/advisories/33786

来源:MISC

链接:http://blog.invisibledenizen.org/2008/07/kaminskys-dns-issue-accidentally-leaked.html

来源:HP

链接:http://marc.info/?l=bugtraq&m=123324863916385&w=2

来源:CONFIRM

链接:http://up2date.astaro.com/2008/08/up2date_7202_released.html

来源:HP

链接:http://marc.info/?l=bugtraq&m=121866517322103&w=2

来源:MISC

链接:http://www.nominum.com/asset_upload_file741_2661.pdf

来源:APPLE

链接:http://lists.apple.com/archives/security-announce//2008/Jul/msg00003.html

来源:CERT

链接:http://www.us-cert.gov/cas/techalerts/TA08-190A.html

来源:SECUNIA

链接:http://secunia.com/advisories/31482

来源:SECUNIA

链接:http://secunia.com/advisories/31354

来源:SECUNIA

链接:http://secunia.com/advisories/31237

来源:SECUNIA

链接:http://secunia.com/advisories/31236

来源:FEDORA

链接:https://www.redhat.com/archives/fedora-package-announce/2008-July/msg00458.html

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020804

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020802

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2525

来源:SECUNIA

链接:http://secunia.com/advisories/31031

来源:SECUNIA

链接:http://secunia.com/advisories/31152

来源:SECUNIA

链接:http://secunia.com/advisories/31030

来源:SECUNIA

链接:http://secunia.com/advisories/31151

来源:SECUNIA

链接:http://secunia.com/advisories/31022

来源:SECUNIA

链接:http://secunia.com/advisories/31143

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020579

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020578

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020577

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020576

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2113/references

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020575

来源:SECUNIA

链接:http://secunia.com/advisories/30973

来源:GENTOO

链接:http://security.gentoo.org/glsa/glsa-200807-08.xml

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2123/references

来源:SECUNIA

链接:http://secunia.com/advisories/30977

来源:CONFIRM

链接:http://www.phys.uu.nl/~rombouts/pdnsd.html

来源:SECUNIA

链接:http://secunia.com/advisories/31823

来源:SECUNIA

链接:http://secunia.com/advisories/30979

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2009/0311

来源:MS

链接:https://docs.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-037

来源:UBUNTU

链接:http://www.ubuntu.com/usn/usn-622-1

来源:XF

链接:https://exchange.xforce.ibmcloud.com/vulnerabilities/43637

来源:BUGTRAQ

链接:http://www.securityfocus.com/archive/1/495869/100/0/threaded

来源:SECUNIA

链接:http://secunia.com/advisories/31011

来源:SECUNIA

链接:http://secunia.com/advisories/31495

来源:SECUNIA

链接:http://secunia.com/advisories/31012

来源:SECUNIA

链接:http://secunia.com/advisories/31254

来源:SECUNIA

链接:http://secunia.com/advisories/31014

来源:SLACKWARE

链接:http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.452680

来源:SECUNIA

链接:http://secunia.com/advisories/31137

来源:SECUNIA

链接:http://secunia.com/advisories/31019

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2009/0297

来源:CONFIRM

链接:https://www.vmware.com/security/advisories/VMSA-2008-0014.html

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2051/references

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020437

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020558

来源:SECUNIA

链接:http://secunia.com/advisories/31204

来源:SECUNIA

链接:http://secunia.com/advisories/31687

来源:SECUNIA

链接:http://secunia.com/advisories/31326

来源:SECUNIA

链接:http://secunia.com/advisories/31207

来源:SECUNIA

链接:http://secunia.com/advisories/31209

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020438

来源:CONFIRM

链接:http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0231

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020440

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020561

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020560

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2166/references

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020448

来源:SECUNIA

链接:http://secunia.com/advisories/31430

来源:SECUNIA

链接:http://secunia.com/advisories/33178

来源:SLACKWARE

链接:http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.539239

来源:MANDRIVA

链接:http://www.mandriva.com/security/advisories?name=MDVSA-2008:139

来源:SUSE

链接:http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00003.html

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2197/references

来源:DEBIAN

链接:https://www.debian.org/security/2008/dsa-1605

来源:DEBIAN

链接:https://www.debian.org/security/2008/dsa-1604

来源:DEBIAN

链接:https://www.debian.org/security/2008/dsa-1603

来源:HP

链接:http://marc.info/?l=bugtraq&m=121630706004256&w=2

来源:REDHAT

链接:http://rhn.redhat.com/errata/RHSA-2008-0533.html

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2291

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020449

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2055/references

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/2139/references

来源:SECUNIA

链接:http://secunia.com/advisories/31221

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020653

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020651

来源:SECUNIA

链接:http://secunia.com/advisories/31588

来源:SECUNIA

链接:http://secunia.com/advisories/31900

来源:MISC

链接:http://www.caughq.org/exploits/CAU-EX-2008-0003.txt

来源:DEBIAN

链接:https://www.debian.org/security/2008/dsa-1619

来源:OVAL

链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5761

来源:EXPLOIT-DB

链接:https://www.exploit-db.com/exploits/6130

来源:CONFIRM

链接:http://www.kb.cert.org/vuls/id/MIMG-7DWR4J

来源:MISC

链接:http://www.doxpara.com/?p=1176

来源:SECUNIA

链接:http://secunia.com/advisories/31451

来源:CONFIRM

链接:http://www.kb.cert.org/vuls/id/MIMG-7ECL8Q

来源:SECUNIA

链接:http://secunia.com/advisories/31213

来源:DEBIAN

链接:https://www.debian.org/security/2008/dsa-1623

来源:CERT

链接:http://www.us-cert.gov/cas/techalerts/TA08-190B.html

来源:SECUNIA

链接:http://secunia.com/advisories/31212

来源:CONFIRM

链接:http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0018

来源:HP

链接:http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01662368

来源:EXPLOIT-DB

链接:https://www.exploit-db.com/exploits/6123

来源:EXPLOIT-DB

链接:https://www.exploit-db.com/exploits/6122

来源:SECUNIA

链接:http://secunia.com/advisories/30925

来源:SECTRACK

链接:http://www.securitytracker.com/id?1020548

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享