目前已經有修正檔可以修正這個漏洞,可是不見得每一個ISP或是公司內部的DNS主機都補上了這個修正檔。我試過我的ISP的主機,就還沒有補上patch。怎麼測試自己用的DNS安不安全呢?請到這個地方,http://doxpara.com/,接著按check my dns的按鈕。接著會跳出一個小框框,如果裡面有「....appears to be safe...」那表示你用個DNS已經有上過更新檔,可以安心使用。如果沒有....那就不太好了。
After I clicked "check my DNS", it shows the following:
Your ISP's name server has other protections above and beyond port randomization against the recently discovered DNS flaws. There is no reason to be concerned about the results seen below.