DNS Server BIND version Directive Remote Version Detection

info Nessus Plugin ID 10028
New! Plugin Severity Now Using CVSS v3

The calculated severity for Plugins has been updated to use CVSS v3 by default. Plugins that do not have a CVSS v3 score will fall back to CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Synopsis

It is possible to obtain the version number of the remote DNS server.

Description

The remote host is running BIND or another DNS server that reports its version number when it receives a special request for the text 'version.bind' in the domain 'chaos'.

This version is not necessarily accurate and could even be forged, as some DNS servers send the information based on a configuration file.

Solution

It is possible to hide the version number of BIND by using the 'version' directive in the 'options' section in named.conf.

Plugin Details

Severity: Info

ID: 10028

File Name: bind_version.nasl

Version: 1.60

Type: remote

Family: DNS

Published: 10/12/1999

Updated: 9/22/2020

Dependencies: dns_version.nasl

Asset Inventory: true

Vulnerability Information

CPE: cpe:2.3:a:isc:bind:*:*:*:*:*:*:*:*

Required KB Items: dns_server/version

Reference Information

IAVT: 0001-T-0583