En het is weer tijd om bind (m.n. indien gebruikt als resolver) te upgraden :
Ook als je het risico op deze content in zones hebt die via zonetransfers of files op een authoritive bind binnenkomen is upgraden aan te raden.
(bijvoorbeeld als je secondary dns levert aan mogelijk kwaadwillende/makkelijk hackbare partijen, of gewoon primary dns met voldoende edit mogelijkheden)


http://www.isc.org/software/bind/adv.../cve-2012-4244
details :
https://kb.isc.org/article/AA-00778/74

"
Description:

If a record with RDATA in excess of 65535 bytes is loaded into a nameserver, a subsequent query for that record will cause named to exit with an assertion failure.

Please Note: Versions of BIND 9.4 and 9.5 are also affected, but these branches are beyond their "end of life" (EOL) and no longer receive testing or security fixes from ISC. For current information on which versions are actively supported, please see http://www.isc.org/software/bind/versions.

Impact:

This vulnerability can be exploited remotely against recursive servers by inducing them to query for records provided by an authoritative server. It affects authoritative servers if a zone containing this type of resource record is loaded from file or provided via zone transfer."