NSD version Directive Remote Version Disclosure

info Nessus Plugin ID 38849

Synopsis

It is possible to obtain the version number of the remote DNS server.

Description

The remote host is running Name Server Daemon (NSD), an open source DNS server. It is possible to extract the version number of the remote installation by sending a special DNS request for the text 'version.bind' in the domain 'chaos'.

Solution

It is possible to hide the version number of NSD by adding the following line to the server section of nsd.conf :

hide-version: yes

See Also

https://www.nlnetlabs.nl/projects/nsd/about/

Plugin Details

Severity: Info

ID: 38849

File Name: nsd_version.nasl

Version: 1.11

Type: remote

Family: DNS

Published: 5/21/2009

Updated: 11/22/2019

Asset Inventory: true

Vulnerability Information

CPE: cpe:2.3:a:nlnetlabs:nsd:*:*:*:*:*:*:*:*

Required KB Items: bind/version