Sony Brings the Bling with Swarovski Photoframe

Problems With DNS Flaw Patches

The Domain Name System (DNS) flaw discovered by Dan Kaminsky appeared to have been patched, thanks to some rare industry-wide co-operation. But, it seems, that might not be quite the case.

ZDNet has reported that security company nCircle has reported problems with the Apple fix for its OS X operating systems, as it fails to randomize ports for client libraries. Their director of security operations, Andrew Storm, blogged:

"The current countermeasure to this DNS cache poisoning vulnerability is to introduce increased entropy by forcing randomisation of the query ID and the source port. Essentially, making it all the more difficult to spoof the DNS response. However, it appears that Apple forgot something. The client libraries on my OS X 10.4.11 system, post patch install, still does not randomize the source port."

And the Sans Institute reported that OS X 10.5.4 was still using incremental ports. There was no comment from Apple.
However, the bad news isn’t limited to Macs. Cisco’s put out an advisory saying some that of its products would negate third-party port randomization, and US-CERT has issued its own advisory stating Juniper Networks firewalls could also be affect by the port randomization issue.

Trackback URL: http://www.digitaltrends.com/computing/problems-with-dns-flaw-patches/trackback/

blog comments powered by Disqus

Join The Digital Trends Community

DT RSS Feed

Everyone wants to be an insider, and you can be one too! Choose your poison: sign-up for our Newsletter, join us on Facebook, or follow us on Twitter. Do all three and you'll be swimming in the the latest news, reviews, videos and more gadget goodness!

DT Newsletter Sign-Up

Sign-up for the Digital Trends newsletter and find out about the latest contests, the hottest content, and the most popular videos. Let us keep you up-to-date!

Our Facebook

Become a DT soldier! Join us on Facebook and share the best news, guides, videos and other cool information directly with all your friends. Some might even thank you for it!

Join the thousands and follow the best of us on Facebook.

Twitter Us

Do you like information in small snippets? Then our Twitter feed is just for you. Follow Digital Trends and you'll be able to catch up daily on our latest content, or even interact directly with our team. Tweet Tweet!

Join the thousands and follow the best of us on Twitter.

That’s Right, Sign-up For Our Monthly Random Prize Drawings and You Could Be That Winner.