The vulnerability could be exploited remotely to cause DNS cache poisoning.
Patch Availability:
A new BIND v9.2.0 depot is available to address an issue encountered on HP-UX B.11.11. The new depot is available by contacting HP Support.
Customers running BIND v8.1.2 on HP-UX B.11.11 should upgrade to BIND v9.2.0 or BIND v9.3.2 and apply the updates listed below.
The BIND v9.3.2 updates are available for download from: http://software.hp.com
Workaround:
Remove "query-source port" and "query-source-v6 port" options in /etc/named.conf. Check firewall settings.