BIND servers can be remotely queried for their version

Risk Level: Low risk vulnerability  Low

Check or Attack Name: bindvrs

Platforms: BIND
Description:

BIND (Berkeley Internet Name Domain) servers support the ability to be remotely queried for their version numbers. This feature could be used by attackers to remotely probe machines for vulnerable versions of BIND to be exploited in later attacks.

Remedy:

Refer to the documentation that accompanies BIND on the procedure for disabling the version feature.

References:

Internet Software Consortium (ISC), BIND page, http://www.isc.org/bind.html


X-Force Logo
Know Your Risks