7th Mar 2003 [SBWID-6046]
COMMAND
	DNS and global Internet security
SYSTEMS AFFECTED
	Internet / Bind
PROBLEM
	Mike  Schiffman,   CISSP   [http://www.packetfactory.net/schiffman.html]
	wrote a whitepaper on the current practice  of  DNS  patching  over  the
	Internet :
	
	 http://www.packetfactory.net/DNS/
	
	"DNS servers across the Internet running BIND are not up  to  date  with
	security patches and  software  updates.  As  a  result,  a  significant
	fraction of the Internet's DNS  servers  is  vulnerable  to  compromise,
	subversion, denial of service, and general misuse. Considering that  DNS
	is the lynchpin  of  the  corporate  enterprise,  the  impact  of  these
	vulnerabilities is significant and a successful attack could bring  down
	any online business."
SOLUTION
	Seer above