{"id":501,"date":"2020-12-04T05:50:21","date_gmt":"2020-12-04T05:50:21","guid":{"rendered":"http:\/\/velaninfo.com\/rs\/?post_type=techtips&#038;p=501"},"modified":"2021-09-29T13:15:32","modified_gmt":"2021-09-29T13:15:32","slug":"dos-vulnerability-bind-dns-service","status":"publish","type":"techtips","link":"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/","title":{"rendered":"How to fix for DoS vulnerability in BIND DNS service?"},"content":{"rendered":"<p>BIND DNS servers versions 9.1.0 to 9.9.7-P1 and 9.10.2-P2 allow a remote attacker to exploit an error in handling TKEY queries to launch a Denial of Service DoS vulnerability in BIND DNS service, server crashing.<\/p>\n<p>You should consider patching if the cPanel\/WHM, Odin Plesk, or DirectAdmin servers are not patched.<\/p>\n<p>There is no workaround to bypass this vulnerability. The only solution is to apply the patch to fix it. All major Linux vendors have already released patches for this vulnerability.<\/p>\n<p><a href=\"https:\/\/www.velaninfo.com\/rs\/tech-tips\/dns\/\"><strong>RedHat and CentOS Servers<\/strong><\/a><\/p>\n<p>Run the below command<\/p>\n<p># yum update bind<\/p>\n<p>Enable Continuous Release (CR) Repository to get this patch. To Install and enable CR repo and update the BIND, the following commands need to be executed \u2013<\/p>\n<p># yum install centos-release-cr<\/p>\n<p># yum-config-manager &#8211;enable cr<\/p>\n<p># yum update bind<\/p>\n<p>To disable the CR repo, execute the following command<\/p>\n<p># yum-config-manager &#8211;disable cr<\/p>\n<p><strong>Debian and Ubuntu Servers<\/strong><\/p>\n<p># apt-get install bind9<\/p>\n<p><strong>OpenSUSE servers<\/strong><\/p>\n<p><strong>\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 <\/strong># zypper update bind<\/p>\n<p>If you are unable to run a normal package upgrade in cPanel\/WHM, Odin Plesk or DirectAdmin servers, you need to custom compile BIND to the latest version<\/p>\n<p>At <a href=\"https:\/\/www.velaninfo.com\">Velan<\/a>, our server support engineers can help you fix DoS vulnerability in BIND DNS service issue. For details, please visit <a href=\"https:\/\/www.velaninfo.com\/mservices\/managed-it-services\"><strong>Managed IT Support Services<\/strong><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>BIND DNS servers versions 9.1.0 to 9.9.7-P1 and 9.10.2-P2 allow a remote attacker to exploit an error in handling TKEY queries to launch a Denial of Service DoS vulnerability in BIND DNS service, server crashing. You should consider patching if the cPanel\/WHM, Odin Plesk, or DirectAdmin servers are not patched. There is no workaround to&#8230;<a class=\"continue-reading text-uppercase\" href=\"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/\"> Continue Reading <img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/www.velaninfo.com\/rs\/wp-content\/themes\/velaninfo\/images\/reading_arw.png\" alt=\"Continue Reading\" width=\"16\" height=\"12\"\/><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","template":"","meta":{"footnotes":""},"tags":[],"class_list":["post-501","techtips","type-techtips","status-publish","hentry","Categories_tech_tip-linux","Categories_tech_tip-security","Categories_tech_tip-server"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v19.5 (Yoast SEO v27.1.1) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>DoS vulnerability in BIND DNS service | How to fix - Velan<\/title>\n<meta name=\"description\" content=\"Steps to fix DoS vulnerability in BIND DNS Service. Velan offers Remote Server Support Services. BIND DNS software vulnerability which could lead to DoS.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"How to fix for DoS vulnerability in BIND DNS service?\" \/>\n<meta property=\"og:description\" content=\"Steps to fix DoS vulnerability in BIND DNS Service. Velan offers Remote Server Support Services. BIND DNS software vulnerability which could lead to DoS.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/\" \/>\n<meta property=\"og:site_name\" content=\"Velan\" \/>\n<meta property=\"article:modified_time\" content=\"2021-09-29T13:15:32+00:00\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"1 minute\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/\",\"url\":\"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/\",\"name\":\"DoS vulnerability in BIND DNS service | How to fix - Velan\",\"isPartOf\":{\"@id\":\"https:\/\/www.velaninfo.com\/rs\/#website\"},\"datePublished\":\"2020-12-04T05:50:21+00:00\",\"dateModified\":\"2021-09-29T13:15:32+00:00\",\"description\":\"Steps to fix DoS vulnerability in BIND DNS Service. Velan offers Remote Server Support Services. BIND DNS software vulnerability which could lead to DoS.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.velaninfo.com\/rs\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Tech Tips\",\"item\":\"https:\/\/www.velaninfo.com\/rs\/techtips\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"How to fix for DoS vulnerability in BIND DNS service?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.velaninfo.com\/rs\/#website\",\"url\":\"https:\/\/www.velaninfo.com\/rs\/\",\"name\":\"Velan\",\"description\":\"Velaninfo Services India Pvt Ltd\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.velaninfo.com\/rs\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"DoS vulnerability in BIND DNS service | How to fix - Velan","description":"Steps to fix DoS vulnerability in BIND DNS Service. Velan offers Remote Server Support Services. BIND DNS software vulnerability which could lead to DoS.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/","og_locale":"en_US","og_type":"article","og_title":"How to fix for DoS vulnerability in BIND DNS service?","og_description":"Steps to fix DoS vulnerability in BIND DNS Service. Velan offers Remote Server Support Services. BIND DNS software vulnerability which could lead to DoS.","og_url":"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/","og_site_name":"Velan","article_modified_time":"2021-09-29T13:15:32+00:00","twitter_card":"summary_large_image","twitter_misc":{"Est. reading time":"1 minute"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/","url":"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/","name":"DoS vulnerability in BIND DNS service | How to fix - Velan","isPartOf":{"@id":"https:\/\/www.velaninfo.com\/rs\/#website"},"datePublished":"2020-12-04T05:50:21+00:00","dateModified":"2021-09-29T13:15:32+00:00","description":"Steps to fix DoS vulnerability in BIND DNS Service. Velan offers Remote Server Support Services. BIND DNS software vulnerability which could lead to DoS.","breadcrumb":{"@id":"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.velaninfo.com\/rs\/techtips\/dos-vulnerability-bind-dns-service\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.velaninfo.com\/rs\/"},{"@type":"ListItem","position":2,"name":"Tech Tips","item":"https:\/\/www.velaninfo.com\/rs\/techtips\/"},{"@type":"ListItem","position":3,"name":"How to fix for DoS vulnerability in BIND DNS service?"}]},{"@type":"WebSite","@id":"https:\/\/www.velaninfo.com\/rs\/#website","url":"https:\/\/www.velaninfo.com\/rs\/","name":"Velan","description":"Velaninfo Services India Pvt Ltd","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.velaninfo.com\/rs\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"}]}},"_links":{"self":[{"href":"https:\/\/www.velaninfo.com\/rs\/wp-json\/wp\/v2\/techtips\/501","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.velaninfo.com\/rs\/wp-json\/wp\/v2\/techtips"}],"about":[{"href":"https:\/\/www.velaninfo.com\/rs\/wp-json\/wp\/v2\/types\/techtips"}],"author":[{"embeddable":true,"href":"https:\/\/www.velaninfo.com\/rs\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.velaninfo.com\/rs\/wp-json\/wp\/v2\/comments?post=501"}],"version-history":[{"count":3,"href":"https:\/\/www.velaninfo.com\/rs\/wp-json\/wp\/v2\/techtips\/501\/revisions"}],"predecessor-version":[{"id":1425,"href":"https:\/\/www.velaninfo.com\/rs\/wp-json\/wp\/v2\/techtips\/501\/revisions\/1425"}],"wp:attachment":[{"href":"https:\/\/www.velaninfo.com\/rs\/wp-json\/wp\/v2\/media?parent=501"}],"wp:term":[{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.velaninfo.com\/rs\/wp-json\/wp\/v2\/tags?post=501"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}