SuSE 10 Security Update : bind (ZYPP Patch Number 5409)
Medium Nessus Plugin ID 33500
SynopsisThe remote SuSE 10 host is missing a security-related patch.
DescriptionThe transaction id and the udp source port used for DNS queries by the bind nameserver were predicatable. Attackers could potentially exploit that weakness to manipulate the DNS cache ('DNS cache poisoning', CVE-2008-1447).
SolutionApply ZYPP patch number 5409.