Vulnerable DNS servers, RFC

Andy Pieters x_terminat_or_3 at yahoo.fr
Mon Oct 24 20:35:25 UTC 2005


Hi List
I got a newsflash from The Register regarding 
http://www.theregister.co.uk/2005/10/24/dns_security_survey/

Having a little nameserver myself, would it be possible for someone to "pharm" 
it?

ip->dns is only allowed on LAN, whereas the same bind also serves a small zone 
on the WAN (to allow lookups for the vlaamse-kern.com domain)

Is there a possibility of bind, which runs in its chroot jail, of being 
poisoned and returning different ips for the vlaamse-kern.com instead of the 
ones from the zone file?


With kind regards


Andy

-- 
Currently not listening to amaroK
Geek code: www.vlaamse-kern.com/geek
Registered Linux User No 379093
If life was for sale, what would be its price?
www.vlaamse-kern.com/sas/ for free php utilities
--



More information about the bind-users mailing list