I have an vulnerable bind running on a server (.... I know ! ) . Today the service was not running any more. I found nothing in the logfiles. Could it be that somebody used the exploit to dos the service? How could I find out in the logs? Are there known signatures?
You probably won't be able to find out. Update the package as soon as possible. No matter if the exploit was successful or not, it is likely that the daemon does not exist any more. A restart is necessary...
Run out of memory ?
This webpage is particularly ugly. The style lacks describing words in my
vocabulary.
Roman.
--
- -
| Roman Drahtmüller