OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
[SA31052] SUSE update for bind

From: Secunia Security Advisories (sec-advsecunia.com)
Date: Fri Jul 11 2008 - 15:24:04 CDT


----------------------------------------------------------------------

Want a new job?

http://secunia.com/secunia_security_specialist/
http://secunia.com/hardcore_disassembler_and_reverse_engineer/

International Partner Manager - Project Sales in the IT-Security
Industry:
http://corporate.secunia.com/about_secunia/64/

----------------------------------------------------------------------

TITLE:
SUSE update for bind

SECUNIA ADVISORY ID:
SA31052

VERIFY ADVISORY:
http://secunia.com/advisories/31052/

CRITICAL:
Moderately critical

IMPACT:
Spoofing

WHERE:
From remote

OPERATING SYSTEM:
openSUSE 10.2
http://secunia.com/product/13375/
openSUSE 10.3
http://secunia.com/product/16124/
openSUSE 11.0
http://secunia.com/product/19180/
SUSE Linux Enterprise Server 9
http://secunia.com/product/4118/
SUSE Linux Enterprise Server 10
http://secunia.com/product/12192/

SOFTWARE:
Novell Open Enterprise Server 1.x
http://secunia.com/product/4664/

DESCRIPTION:
SUSE has issued an update for bind. This fixes a vulnerability, which
can be exploited by malicious people to poison the DNS cache.

For more information:
SA30973

SOLUTION:
Apply updated packages.

x86 Platform:

openSUSE 11.0:

http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/bind-9.4.2-39.2.i586.rpm

http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/bind-chrootenv-9.4.2-39.2.i586.rpm

http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/bind-devel-9.4.2-39.2.i586.rpm

http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/bind-doc-9.4.2-39.2.i586.rpm

http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/bind-libs-9.4.2-39.2.i586.rpm

http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/bind-utils-9.4.2-39.2.i586.rpm

openSUSE 10.3:

http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/bind-9.4.1.P1-12.5.i586.rpm

http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/bind-chrootenv-9.4.1.P1-12.5.i586.rpm

http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/bind-devel-9.4.1.P1-12.5.i586.rpm

http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/bind-doc-9.4.1.P1-12.5.i586.rpm

http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/bind-libs-9.4.1.P1-12.5.i586.rpm

http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/bind-utils-9.4.1.P1-12.5.i586.rpm

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/bind-9.3.5P1-0.1.i586.rpm

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/bind-chrootenv-9.3.5P1-0.1.i586.rpm

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/bind-devel-9.3.5P1-0.1.i586.rpm

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/bind-doc-9.3.5P1-0.1.i586.rpm

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/bind-libs-9.3.5P1-0.1.i586.rpm

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/bind-utils-9.3.5P1-0.1.i586.rpm

x86-64 Platform:

openSUSE 11.0:

http://download.opensuse.org/pub/opensuse/update/11.0/rpm/x86_64/bind-libs-32bit-9.4.2-39.2.x86_64.rpm

openSUSE 10.3:

http://download.opensuse.org/pub/opensuse/update/10.3/rpm/x86_64/bind-libs-32bit-9.4.1.P1-12.5.x86_64.rpm

openSUSE 10.2:

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/bind-libs-32bit-9.3.5P1-0.1.x86_64.rpm

Sources:

openSUSE 11.0:

http://download.opensuse.org/pub/opensuse/update/11.0/rpm/src/bind-9.4.2-39.2.src.rpm

openSUSE 10.3:

http://download.opensuse.org/pub/opensuse/update/10.3/rpm/src/bind-9.4.1.P1-12.5.src.rpm

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/src/bind-9.3.5P1-0.1.src.rpm

Open Enterprise Server

http://support.novell.com/techcenter/psdb/aa846ea840c9bf29e6974f3b6913e550.html

Novell Linux POS 9

http://support.novell.com/techcenter/psdb/aa846ea840c9bf29e6974f3b6913e550.html

Novell Linux Desktop 9

http://support.novell.com/techcenter/psdb/aa846ea840c9bf29e6974f3b6913e550.html

SUSE SLES 9

http://support.novell.com/techcenter/psdb/aa846ea840c9bf29e6974f3b6913e550.html

SUSE Linux Enterprise Server 10 SP1

http://support.novell.com/techcenter/psdb/555065b7278085ce1ce7a6e84b6f07aa.html

SUSE Linux Enterprise Server 10 SP2

http://support.novell.com/techcenter/psdb/555065b7278085ce1ce7a6e84b6f07aa.html

SLE SDK 10 SP2

http://support.novell.com/techcenter/psdb/555065b7278085ce1ce7a6e84b6f07aa.html

SUSE Linux Enterprise 10 SP2 DEBUGINFO

http://support.novell.com/techcenter/psdb/555065b7278085ce1ce7a6e84b6f07aa.html

SLE SDK 10 SP1

http://support.novell.com/techcenter/psdb/555065b7278085ce1ce7a6e84b6f07aa.html

SUSE Linux Enterprise Desktop 10 SP1

http://support.novell.com/techcenter/psdb/555065b7278085ce1ce7a6e84b6f07aa.html

SUSE Linux Enterprise Desktop 10 SP2

http://support.novell.com/techcenter/psdb/555065b7278085ce1ce7a6e84b6f07aa.html

ORIGINAL ADVISORY:
http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00003.html

OTHER REFERENCES:
SA30973:
http://secunia.com/advisories/30973/

----------------------------------------------------------------------

About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.

Subscribe:
http://secunia.com/secunia_security_advisories/

Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/

Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.

----------------------------------------------------------------------

Unsubscribe: Secunia Security Advisories

----------------------------------------------------------------------