Watch it: Multiple DNS implementations vulnerable to cache poisoning

Ken A ka at pacific.net
Wed Jul 9 23:50:11 IST 2008


This nice little tool was posted to the dns operations list.
Cut and paste this into your linux or BSD (Mac) to check your configured 
DNS resolver for cache poisoning vulnerability.

dig +short porttest.dns-oarc.net TXT

In windows you can use nslookup
 > nslookup
 > set type=txt
 > porttest.dns-oarc.net

Might be good to know how spoofable the DNS you are using is!

Ken


Peter Farrow wrote:
> 
> 
> 
> Alex Broens wrote:
>> Multiple DNS implementations vulnerable to cache poisoning
>>
>> http://www.kb.cert.org/vuls/id/800113
>>
>> Centos 4.x and 5.x provide udates
>>
>> yum update bind
>>
>> happy updating...
>>
>> Alex
>>
>>
>>
> thanks Alex!
> 
> Pete
> 


-- 
Ken Anderson
Pacific.Net



More information about the MailScanner mailing list