[ubuntu/cosmic-proposed] bind9 1:9.11.4+dfsg-3ubuntu4 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Thu Sep 20 09:59:13 UTC 2018


bind9 (1:9.11.4+dfsg-3ubuntu4) cosmic; urgency=medium

  * SECURITY UPDATE: denial of service crash when deny-answer-aliases
    option is used
    - debian/patches/CVE-2018-5740-1.patch: explicit DNAME query could
      trigger a crash if deny-answer-aliases was set
    - debian/patches/CVE-2018-5740-2.patch: add tests
    - debian/patches/CVE-2018-5740-3.patch: caclulate nlabels and set
      chainingp correctly, add test
    - CVE-2018-5740

Date: Thu, 20 Sep 2018 11:11:05 +0200
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/bind9/1:9.11.4+dfsg-3ubuntu4
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 20 Sep 2018 11:11:05 +0200
Source: bind9
Binary: bind9 bind9utils bind9-doc bind9-host libbind-dev libbind9-160 libdns1102 libirs160 libisc169 liblwres160 libisccc160 libisccfg160 dnsutils libbind-export-dev libdns-export1102 libdns-export1102-udeb libirs-export160 libirs-export160-udeb libisc-export169 libisc-export169-udeb libisccc-export160 libisccc-export160-udeb libisccfg-export160 libisccfg-export160-udeb
Architecture: source
Version: 1:9.11.4+dfsg-3ubuntu4
Distribution: cosmic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
 bind9      - Internet Domain Name Server
 bind9-doc  - Documentation for BIND
 bind9-host - DNS lookup utility (deprecated)
 bind9utils - Utilities for BIND
 dnsutils   - Clients provided with BIND
 libbind-dev - Static Libraries and Headers used by BIND
 libbind-export-dev - Development files for the exported BIND libraries
 libbind9-160 - BIND9 Shared Library used by BIND
 libdns-export1102 - Exported DNS Shared Library
 libdns-export1102-udeb - Exported DNS library for debian-installer (udeb)
 libdns1102 - DNS Shared Library used by BIND
 libirs-export160 - Exported IRS Shared Library
 libirs-export160-udeb - Exported IRS library for debian-installer (udeb)
 libirs160  - DNS Shared Library used by BIND
 libisc-export169 - Exported ISC Shared Library
 libisc-export169-udeb - Exported ISC library for debian-installer (udeb)
 libisc169  - ISC Shared Library used by BIND
 libisccc-export160 - Command Channel Library used by BIND
 libisccc-export160-udeb - Command Channel Library used by BIND (udeb)
 libisccc160 - Command Channel Library used by BIND
 libisccfg-export160 - Exported ISC CFG Shared Library
 libisccfg-export160-udeb - Exported ISC CFG library for debian-installer (udeb)
 libisccfg160 - Config File Handling Library used by BIND
 liblwres160 - Lightweight Resolver Library used by BIND
Changes:
 bind9 (1:9.11.4+dfsg-3ubuntu4) cosmic; urgency=medium
 .
   * SECURITY UPDATE: denial of service crash when deny-answer-aliases
     option is used
     - debian/patches/CVE-2018-5740-1.patch: explicit DNAME query could
       trigger a crash if deny-answer-aliases was set
     - debian/patches/CVE-2018-5740-2.patch: add tests
     - debian/patches/CVE-2018-5740-3.patch: caclulate nlabels and set
       chainingp correctly, add test
     - CVE-2018-5740
Checksums-Sha1:
 39cc462bf6185db64e4e4537874523a72d61cb61 3909 bind9_9.11.4+dfsg-3ubuntu4.dsc
 0baaf8e4641621ea3661025351d5ae56738f9be6 80428 bind9_9.11.4+dfsg-3ubuntu4.debian.tar.xz
 341abb5c70119ad82e3480abe9159c0436b92016 9023 bind9_9.11.4+dfsg-3ubuntu4_source.buildinfo
Checksums-Sha256:
 8b6e0e0137416d90c7bc8797572604eccf140787ff43791ba8df6fd9ba67b67b 3909 bind9_9.11.4+dfsg-3ubuntu4.dsc
 4575d0353e90c4eb5f537dd49adb808672f1ba8aff46628678038fc9da1ba4fb 80428 bind9_9.11.4+dfsg-3ubuntu4.debian.tar.xz
 7597db6a730e56bc8cf47e9e3d2dfead63eea45224eda28dba15e1f635797dd1 9023 bind9_9.11.4+dfsg-3ubuntu4_source.buildinfo
Files:
 f2a4b7a6445a43ce343e86d3c27f6157 3909 net optional bind9_9.11.4+dfsg-3ubuntu4.dsc
 dfa6c0ecc0ced6aae04e71889fa20061 80428 net optional bind9_9.11.4+dfsg-3ubuntu4.debian.tar.xz
 893cac491f3d286b06b1e3e1eb5fe6b5 9023 net optional bind9_9.11.4+dfsg-3ubuntu4_source.buildinfo
Original-Maintainer: BIND 9 Package <bind9 at package.debian.org>

-----BEGIN PGP SIGNATURE-----
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=lzQ+
-----END PGP SIGNATURE-----


More information about the Cosmic-changes mailing list