[ubuntu/hardy-security] bind9 1:9.4.2.dfsg.P2-2ubuntu0.9 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Wed Nov 16 23:04:42 UTC 2011


bind9 (1:9.4.2.dfsg.P2-2ubuntu0.9) hardy-security; urgency=low

  * SECURITY UPDATE: denial of service via specially crafted packet
    - bin/named/query.c,lib/dns/rbtdb.c: correctly handle cache lookups
      that return RRSIG data associated with nonexistent records.
    - Patch backported from 9.4-ESV-R5-P1.
    - CVE-2011-4313

Date: Wed, 16 Nov 2011 14:30:39 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/hardy/+source/bind9/1:9.4.2.dfsg.P2-2ubuntu0.9
-------------- next part --------------
Format: 1.7
Date: Wed, 16 Nov 2011 14:30:39 -0500
Source: bind9
Binary: bind9 bind9-doc bind9-host libbind-dev libbind9-30 libdns35 libdns36 libisc35 liblwres30 libisccc30 libisccfg30 dnsutils lwresd
Architecture: source
Version: 1:9.4.2.dfsg.P2-2ubuntu0.9
Distribution: hardy-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 bind9      - Internet Domain Name Server
 bind9-doc  - Documentation for BIND
 bind9-host - Version of 'host' bundled with BIND 9.X
 dnsutils   - Clients provided with BIND
 libbind-dev - Static Libraries and Headers used by BIND
 libbind9-30 - BIND9 Shared Library used by BIND
 libdns35   - DNS Shared Library used by BIND
 libdns36   - DNS Shared Library used by BIND
 libisc35   - ISC Shared Library used by BIND
 libisccc30 - Command Channel Library used by BIND
 libisccfg30 - Config File Handling Library used by BIND
 liblwres30 - Lightweight Resolver Library used by BIND
 lwresd     - Lightweight Resolver Daemon
Changes: 
 bind9 (1:9.4.2.dfsg.P2-2ubuntu0.9) hardy-security; urgency=low
 .
   * SECURITY UPDATE: denial of service via specially crafted packet
     - bin/named/query.c,lib/dns/rbtdb.c: correctly handle cache lookups
       that return RRSIG data associated with nonexistent records.
     - Patch backported from 9.4-ESV-R5-P1.
     - CVE-2011-4313
Files: 
 68dbef5bdf6b51d21c66553f60d52081 1636 net optional bind9_9.4.2.dfsg.P2-2ubuntu0.9.dsc
 69ca51947d68fec96dd3721593249295 243018 net optional bind9_9.4.2.dfsg.P2-2ubuntu0.9.diff.gz
Original-Maintainer: LaMont Jones <lamont at debian.org>


More information about the Hardy-changes mailing list