Edward Jaffe wrote:
Is z/OS vulnerable? If not, why not? If so, what is the fixing APAR?

According to CERT, IBM mainframes are still listed as "unknown":

http://www.kb.cert.org/vuls/id/800113
http://www.us-cert.gov/cas/techalerts/TA08-190B.html

But, Internet Systems Consortium (ISC) BIND is listed as "vulnerable". ISC BIND status -- last updated Aug 1, 2008 -- is here:

http://www.kb.cert.org/vuls/id/MIMG-7E6K7P

Last Wednesday, AT&T -- one of the world's largest ISPs -- became the first victim of the attack:

http://www.thetechherald.com/article.php/200831/1607/AT&T-first-reported-victim-of-DNS-attack-%E2%80%93-HD-Moore-was-NOT-Pwned

--
Edward E Jaffe
Phoenix Software International, Inc
5200 W Century Blvd, Suite 800
Los Angeles, CA 90045
310-338-0400 x318
[EMAIL PROTECTED]
http://www.phoenixsoftware.com/

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [EMAIL PROTECTED] with the message: GET IBM-MAIN INFO
Search the archives at http://bama.ua.edu/archives/ibm-main.html

Reply via email to