Hide Forgot
The bind97 package is 9.7.0-P2, which has a problem handling DNSSEC validation when new DS records are inserted. ISC recommends using 9.7.2 at a minimum to avoid this problem. Since AFAIK the main use of the bind97 package is DNSSEC-validating resolvers, and this issue will hit when .COM is signed on March 31, 2011, it should be updated ASAP. https://www.isc.org/announcement/bind-9-dnssec-validation-fails-new-ds-record
You are right this is important issue, thanks for the report.
If it is deemed to be an "important issue" then why has no update to the bind97 package been released? March 31, 2011 has come and gone.
See also: Bug 693788
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. http://rhn.redhat.com/errata/RHBA-2013-0043.html