CA-97.04 patched ntalk?

 Is there a patch for ntalk that fixes the hole reported by
 CA-97.04?  I've upgraded our DNS server to bind 4.9.5 but
 would like a patch in case we are also being resolved by
 binds that are suceptible.  Thanks.


While looking in the logs of an NCSA HTTPD for possible hacker evidence,
I noted something odd, which I prefer not to describe in detail.
Anyhow, I looked around at NCSA to see if I could see the relevant
security exposure described, and I couldn't.  At first I didn't find
anything on dejanews either.

But later on, I found a reference to CERT Advisory CA-97.07, which
described the situation exactly, and mentioned other servers that might
be affected.

Recommendation: disable nph-test-cgi  (and read the advisory, of

Hope this is useful to someone else.  It doesn't seem to have been
mentioned in this group, but as it's no secret on the security
groups, I presume the serious hackers all know it anyway.

