Oval Definition:oval:org.mitre.oval:def:28787
Revision Date:2015-08-17Version:11
Title:RHSA-2008:0533 -- bind security update (Important)
Description:Updated bind packages that help mitigate DNS spoofing attacks are nowavailable. This update has been rated as having important security impact by the RedHat Security Response Team.We have updated the Enterprise Linux 5 packages in this advisory. Thedefault and sample caching-nameserver configuration files have been updatedso that they do not specify a fixed query-source port. Administratorswishing to take advantage of randomized UDP source ports should check theirconfiguration file to ensure they have not specified fixed query-source ports.ISC BIND (Berkeley Internet Name Domain) is an implementation of the DNS(Domain Name System) protocols.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CESA-2008:0533-CentOS 2
CESA-2008:0533-CentOS 3
CESA-2008:0533-CentOS 5
CVE-2008-1447
RHSA-2008:0533
Platform(s):CentOS Linux 2
CentOS Linux 3
CentOS Linux 5
Red Hat Enterprise Linux 3
Red Hat Enterprise Linux 4
Red Hat Enterprise Linux 5
Product(s):bind
selinux-policy
selinux-policy-targeted
Definition Synopsis
  • Red Hat Enterprise Linux 5 release section
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • AND Packages match section
  • bind-chroot is earlier than 30:9.3.4-6.0.2.P1.el5_2
  • OR bind-devel is earlier than 30:9.3.4-6.0.2.P1.el5_2
  • OR bind-libbind-devel is earlier than 30:9.3.4-6.0.2.P1.el5_2
  • OR caching-nameserver is earlier than 30:9.3.4-6.0.2.P1.el5_2
  • OR selinux-policy-devel is earlier than 0:2.4.6-137.1.el5_2
  • OR bind is earlier than 30:9.3.4-6.0.2.P1.el5_2
  • OR bind-libs is earlier than 30:9.3.4-6.0.2.P1.el5_2
  • OR bind-sdb is earlier than 30:9.3.4-6.0.2.P1.el5_2
  • OR bind-utils is earlier than 30:9.3.4-6.0.2.P1.el5_2
  • OR selinux-policy is earlier than 0:2.4.6-137.1.el5_2
  • OR selinux-policy-mls is earlier than 0:2.4.6-137.1.el5_2
  • OR selinux-policy-strict is earlier than 0:2.4.6-137.1.el5_2
  • OR selinux-policy-targeted is earlier than 0:2.4.6-137.1.el5_2
  • Red Hat Enterprise Linux 3 release section
  • The operating system installed on the system is Red Hat Enterprise Linux 3
  • AND Packages match section
  • bind is earlier than 20:9.2.4-22.el3
  • OR bind-chroot is earlier than 20:9.2.4-22.el3
  • OR bind-devel is earlier than 20:9.2.4-22.el3
  • OR bind-libs is earlier than 20:9.2.4-22.el3
  • OR bind-utils is earlier than 20:9.2.4-22.el3
  • Red Hat Enterprise Linux 4 release section
  • The operating system installed on the system is Red Hat Enterprise Linux 4
  • AND Packages match section
  • bind is earlier than 20:9.2.4-28.0.1.el4
  • OR bind-chroot is earlier than 20:9.2.4-28.0.1.el4
  • OR bind-devel is earlier than 20:9.2.4-28.0.1.el4
  • OR bind-libs is earlier than 20:9.2.4-28.0.1.el4
  • OR bind-utils is earlier than 20:9.2.4-28.0.1.el4
  • OR selinux-policy-targeted is earlier than 0:1.17.30-2.150.el4
  • OR selinux-policy-targeted-sources is earlier than 0:1.17.30-2.150.el4
  • CentOS Linux 5 release section
  • The operating system installed on the system is CentOS Linux 5.x
  • AND Packages match section
  • bind is earlier than 30:9.3.4-6.0.1.P1.el5_2
  • OR bind-chroot is earlier than 30:9.3.4-6.0.1.P1.el5_2
  • OR bind-devel is earlier than 30:9.3.4-6.0.1.P1.el5_2
  • OR bind-libbind-devel is earlier than 30:9.3.4-6.0.1.P1.el5_2
  • OR bind-libs is earlier than 30:9.3.4-6.0.1.P1.el5_2
  • OR bind-sdb is earlier than 30:9.3.4-6.0.1.P1.el5_2
  • OR bind-utils is earlier than 30:9.3.4-6.0.1.P1.el5_2
  • OR caching-nameserver is earlier than 30:9.3.4-6.0.1.P1.el5_2
  • OR selinux-policy is earlier than 0:2.4.6-137.1.el5
  • OR selinux-policy-devel is earlier than 0:2.4.6-137.1.el5
  • OR selinux-policy-mls is earlier than 0:2.4.6-137.1.el5
  • OR selinux-policy-strict is earlier than 0:2.4.6-137.1.el5
  • OR selinux-policy-targeted is earlier than 0:2.4.6-137.1.el5
  • BACK