I received this notice from my ISP today. Thought it would be a good heads-up to post this here for others.
*** DNS Service Vulnerability ***
A vulnerability has been detected in the way some Domain Name System
(DNS) services handle recursive DNS queries. The DNS is responsible for
translating host names to IP addresses and is critical for the normal
operation of internet-connected systems. DNS cache poisoning (sometimes
referred to as cache pollution) is an attack technique that allows an
attacker to introduce forged DNS information into the cache of a caching
nameserver. Older versions of the BIND (Berkeley Internet Name Domain)
DNS service and the Microsoft DNS service have been found to be
susceptible to the poisoning of cached recursive resolvers with spoofed
data
If you are running any 3rd party DNS service you should check your
server for vulnerabilities or updates immediately.
You should upgrade your server as soon as possible to prevent any issues
from occurring. To upgrade your server, refer to one of the following
help articles:
For Windows servers:
http://help.securepaynet.net./article.php?prog_id=dynaweb&article_id=4691&topic_id=&pl_id=1274&isc=For Linux Servers:
http://help.securepaynet.net./article.php?prog_id=dynaweb&article_id=4690&topic_id=&pl_id=1274&isc=Please contact us with any questions or concerns you have regarding your
server or this update.
Thanks again for choosing DomainsNed.com servers.
Sincerely,
DomainsNed.com