BIND servers can be remotely queried for their version |
---|
Risk Level: | Low | Check or Attack Name: bindvrs |
---|---|---|
Platforms: | BIND | |
Description: | BIND (Berkeley Internet Name Domain) servers support the ability to be remotely queried for their version numbers. This feature could be used by attackers to remotely probe machines for vulnerable versions of BIND to be exploited in later attacks. |
|
Remedy: | Refer to the documentation that accompanies BIND on the procedure for disabling the version feature. |
|
References: | Internet Software Consortium (ISC), BIND page, http://www.isc.org/bind.html |
Know Your Risks |