Fedora 8 : bind-9.5.0-20.b1.fc8 (2007-4655)

This script is Copyright (C) 2007-2015 Tenable Network Security, Inc.


Synopsis :

The remote Fedora host is missing a security update.

Description :

- bind-chroot-admin called restorecon on /proc filesystem
(#405281)

- 9.5.0b1 release (#405281, #392491)

- stop with initscript will fail if rndc was disabled
(#417431)

- fixed IDN support in dig and host utilities (#412241)

- added dst/gssapi.h to -devel subpackage (#419091)

- CVE-2007-6283 - /etc/rndc.key file had insecure
permissions

Note that Tenable Network Security has extracted the preceding
description block directly from the Fedora security advisory. Tenable
has attempted to automatically clean and format it as much as possible
without introducing additional issues.

See also :

https://bugzilla.redhat.com/show_bug.cgi?id=392491
https://bugzilla.redhat.com/show_bug.cgi?id=405281
https://bugzilla.redhat.com/show_bug.cgi?id=412241
https://bugzilla.redhat.com/show_bug.cgi?id=417431
https://bugzilla.redhat.com/show_bug.cgi?id=419091
https://bugzilla.redhat.com/show_bug.cgi?id=419421
https://bugzilla.redhat.com/show_bug.cgi?id=423071
http://www.nessus.org/u?f66d8b03

Solution :

Update the affected packages.

Risk factor :

Medium / CVSS Base Score : 4.9
(CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C)

Family: Fedora Local Security Checks

Nessus Plugin ID: 29763 (fedora_2007-4655.nasl)

Bugtraq ID:

CVE ID: CVE-2007-6283

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now