From theall at tenable.com Thu Jun 26 09:02:40 2014 From: theall at tenable.com (George Theall) Date: Thu, 26 Jun 2014 10:02:40 -0400 Subject: [VIM] ISC BIND EDNS Options CVE-2014-3859 Remote Denial of Service Vulnerability Message-ID: Dinesh / Narayan / Venkat / Rob : can someone clarify the differences, if any, between BIDs 68038 and 68193? Both appear to cover the recent DoS vulnerability credited to Codenomicon and covered by CVE-2014-3859. George -- theall at tenable.com From jericho at attrition.org Sun Jun 29 23:28:05 2014 From: jericho at attrition.org (security curmudgeon) Date: Sun, 29 Jun 2014 23:28:05 -0500 (CDT) Subject: [VIM] ISC BIND EDNS Options CVE-2014-3859 Remote Denial of Service Vulnerability In-Reply-To: References: Message-ID: I never saw a reply to this, did I miss it? On Thu, 26 Jun 2014, George Theall wrote: : Dinesh / Narayan / Venkat / Rob : can someone clarify the differences, if any, between BIDs 68038 and 68193? Both appear to cover the recent DoS vulnerability credited to Codenomicon and covered by CVE-2014-3859. : : George : -- : theall at tenable.com : From theall at tenable.com Mon Jun 30 06:35:30 2014 From: theall at tenable.com (George Theall) Date: Mon, 30 Jun 2014 07:35:30 -0400 Subject: [VIM] ISC BIND EDNS Options CVE-2014-3859 Remote Denial of Service Vulnerability In-Reply-To: References: Message-ID: <3006B4C0-4198-423B-A3B3-080C1D2EFB17@tenable.com> On Jun 30, 2014, at 12:28 AM, security curmudgeon wrote: > > I never saw a reply to this, did I miss it? I didn?t get t reply, either on the mailing list or privately, although shortly after my post I noticed that SecurtiyFocus retired 68193. > > On Thu, 26 Jun 2014, George Theall wrote: > > : Dinesh / Narayan / Venkat / Rob : can someone clarify the differences, if any, between BIDs 68038 and 68193? Both appear to cover the recent DoS vulnerability credited to Codenomicon and covered by CVE-2014-3859. > : > : George > : -- > : theall at tenable.com > : George -- theall at tenable.com From Himanshu_Mehta at symantec.com Mon Jun 30 07:03:08 2014 From: Himanshu_Mehta at symantec.com (Himanshu Mehta) Date: Mon, 30 Jun 2014 05:03:08 -0700 Subject: [VIM] ISC BIND EDNS Options CVE-2014-3859 Remote Denial of Service Vulnerability Message-ID: <1587858E792C6C48ADD97BCB156E8ED031F80E237F@APJ1XCHEVSPIN31.SYMC.SYMANTEC.COM> Hi George, 1 BID was duplicate, so we have retired it. Thanks for bringing this to notice. -----Original Message----- From: vim-bounces at attrition.org [mailto:vim-bounces at attrition.org] On Behalf Of George Theall Sent: Monday, June 30, 2014 5:06 PM To: Vulnerability Information Managers Subject: Re: [VIM] ISC BIND EDNS Options CVE-2014-3859 Remote Denial of Service Vulnerability Importance: High On Jun 30, 2014, at 12:28 AM, security curmudgeon wrote: > > I never saw a reply to this, did I miss it? I didn't get t reply, either on the mailing list or privately, although shortly after my post I noticed that SecurtiyFocus retired 68193. > > On Thu, 26 Jun 2014, George Theall wrote: > > : Dinesh / Narayan / Venkat / Rob : can someone clarify the differences, if any, between BIDs 68038 and 68193? Both appear to cover the recent DoS vulnerability credited to Codenomicon and covered by CVE-2014-3859. > : > : George > : -- > : theall at tenable.com > : George -- theall at tenable.com