[ubuntu/cosmic-proposed] bind9 1:9.11.4+dfsg-3ubuntu4 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Thu Sep 20 09:59:13 UTC 2018
bind9 (1:9.11.4+dfsg-3ubuntu4) cosmic; urgency=medium
* SECURITY UPDATE: denial of service crash when deny-answer-aliases
option is used
- debian/patches/CVE-2018-5740-1.patch: explicit DNAME query could
trigger a crash if deny-answer-aliases was set
- debian/patches/CVE-2018-5740-2.patch: add tests
- debian/patches/CVE-2018-5740-3.patch: caclulate nlabels and set
chainingp correctly, add test
- CVE-2018-5740
Date: Thu, 20 Sep 2018 11:11:05 +0200
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/bind9/1:9.11.4+dfsg-3ubuntu4
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Thu, 20 Sep 2018 11:11:05 +0200
Source: bind9
Binary: bind9 bind9utils bind9-doc bind9-host libbind-dev libbind9-160 libdns1102 libirs160 libisc169 liblwres160 libisccc160 libisccfg160 dnsutils libbind-export-dev libdns-export1102 libdns-export1102-udeb libirs-export160 libirs-export160-udeb libisc-export169 libisc-export169-udeb libisccc-export160 libisccc-export160-udeb libisccfg-export160 libisccfg-export160-udeb
Architecture: source
Version: 1:9.11.4+dfsg-3ubuntu4
Distribution: cosmic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
bind9 - Internet Domain Name Server
bind9-doc - Documentation for BIND
bind9-host - DNS lookup utility (deprecated)
bind9utils - Utilities for BIND
dnsutils - Clients provided with BIND
libbind-dev - Static Libraries and Headers used by BIND
libbind-export-dev - Development files for the exported BIND libraries
libbind9-160 - BIND9 Shared Library used by BIND
libdns-export1102 - Exported DNS Shared Library
libdns-export1102-udeb - Exported DNS library for debian-installer (udeb)
libdns1102 - DNS Shared Library used by BIND
libirs-export160 - Exported IRS Shared Library
libirs-export160-udeb - Exported IRS library for debian-installer (udeb)
libirs160 - DNS Shared Library used by BIND
libisc-export169 - Exported ISC Shared Library
libisc-export169-udeb - Exported ISC library for debian-installer (udeb)
libisc169 - ISC Shared Library used by BIND
libisccc-export160 - Command Channel Library used by BIND
libisccc-export160-udeb - Command Channel Library used by BIND (udeb)
libisccc160 - Command Channel Library used by BIND
libisccfg-export160 - Exported ISC CFG Shared Library
libisccfg-export160-udeb - Exported ISC CFG library for debian-installer (udeb)
libisccfg160 - Config File Handling Library used by BIND
liblwres160 - Lightweight Resolver Library used by BIND
Changes:
bind9 (1:9.11.4+dfsg-3ubuntu4) cosmic; urgency=medium
.
* SECURITY UPDATE: denial of service crash when deny-answer-aliases
option is used
- debian/patches/CVE-2018-5740-1.patch: explicit DNAME query could
trigger a crash if deny-answer-aliases was set
- debian/patches/CVE-2018-5740-2.patch: add tests
- debian/patches/CVE-2018-5740-3.patch: caclulate nlabels and set
chainingp correctly, add test
- CVE-2018-5740
Checksums-Sha1:
39cc462bf6185db64e4e4537874523a72d61cb61 3909 bind9_9.11.4+dfsg-3ubuntu4.dsc
0baaf8e4641621ea3661025351d5ae56738f9be6 80428 bind9_9.11.4+dfsg-3ubuntu4.debian.tar.xz
341abb5c70119ad82e3480abe9159c0436b92016 9023 bind9_9.11.4+dfsg-3ubuntu4_source.buildinfo
Checksums-Sha256:
8b6e0e0137416d90c7bc8797572604eccf140787ff43791ba8df6fd9ba67b67b 3909 bind9_9.11.4+dfsg-3ubuntu4.dsc
4575d0353e90c4eb5f537dd49adb808672f1ba8aff46628678038fc9da1ba4fb 80428 bind9_9.11.4+dfsg-3ubuntu4.debian.tar.xz
7597db6a730e56bc8cf47e9e3d2dfead63eea45224eda28dba15e1f635797dd1 9023 bind9_9.11.4+dfsg-3ubuntu4_source.buildinfo
Files:
f2a4b7a6445a43ce343e86d3c27f6157 3909 net optional bind9_9.11.4+dfsg-3ubuntu4.dsc
dfa6c0ecc0ced6aae04e71889fa20061 80428 net optional bind9_9.11.4+dfsg-3ubuntu4.debian.tar.xz
893cac491f3d286b06b1e3e1eb5fe6b5 9023 net optional bind9_9.11.4+dfsg-3ubuntu4_source.buildinfo
Original-Maintainer: BIND 9 Package <bind9 at package.debian.org>
-----BEGIN PGP SIGNATURE-----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=lzQ+
-----END PGP SIGNATURE-----
More information about the Cosmic-changes
mailing list