1. Please take a little time for this simple survey! Thank you for participating!
    Dismiss Notice
  2. Dear Pleskians, please read this carefully! New attachments and other rules Thank you!
    Dismiss Notice
  3. Dear Pleskians, I really hope that you will share your opinion in this Special topic for chatter about Plesk in the Clouds. Thank you!
    Dismiss Notice

DNS fix?

Discussion in 'Plesk for Windows - 8.x and Older' started by shall, Jul 9, 2008.

  1. shall

    shall Regular Pleskian

    26
    57%
    Joined:
    Apr 2, 2007
    Messages:
    226
    Likes Received:
    0
  2. sergius

    sergius Golden Pleskian

    28
    57%
    Joined:
    Nov 6, 2005
    Messages:
    1,898
    Likes Received:
    0
  3. shall

    shall Regular Pleskian

    26
    57%
    Joined:
    Apr 2, 2007
    Messages:
    226
    Likes Received:
    0
    What's the ETA on that?

    The discoverer will be publishing the vulnerability August 2nd. We have to be able to test the Plesk patch and fix the issues that are inevitably going to be caused by the Plesk update before the DNS poisoning from these is in the wild - which is going to be around August 3rd (if not sooner).
     
  4. dynamicnet

    dynamicnet Basic Pleskian

    23
    90%
    Joined:
    Sep 19, 2007
    Messages:
    65
    Likes Received:
    0
    Greetings:

    See http://www.theregister.co.uk/2008/07/09/dns_bug_student_discovery/

    This vulnerability was reported approximately three years ago.

    If your servers are secured, and your DNS servers secured (which means you only transfer between your own name severs, and only recursive queries through your own servers), then the DNS poisoning to worry about is not your own cluster, those servers external to yours.

    That's why all parties need to patch. If it was just Plesk users who patched or just H-Sphere users who patched, the threat would still be present from the outside world.

    In any event, we are all waiting on patching -- Plesk, H-Sphere, and other Parallels products as every patched server contributes to the overall health of the net.

    Thank you.
     
Loading...