OpenBSD Information for VU#196945
ISC BIND 8 contains buffer overflow in transaction signature (TSIG) handling code
- Vendor Information Help Date Notified: 18 Jan 2001
- Statement Date:
- Date Updated: 30 Jan 2001
So we are pretty impressed with ourselves, since it looks like none of these BIND bugs affected us. In '97, a couple of us did some sprintf->snprintf whacking. Probably took about 3 minutes.
The vendor has not provided us with any further information regarding this vulnerability.
The CERT/CC has no additional comments at this time.
If you have feedback, comments, or additional information about this vulnerability, please send us email.