[ubuntu/lucid-security] unbound 1.4.1-2ubuntu0.2 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Fri Dec 23 15:03:41 UTC 2011


unbound (1.4.1-2ubuntu0.2) lucid-security; urgency=high

  [ Scott Kitterman ]
  * SECURITY UPDATE:
  * References: CVE 2011-4528, 2011-4869 (LP: #907983)
  * Add debian/patches/CVE-2011-4528 to fix DoS with DNSSEC
    - Patch from Debian security update

  [ Marc Deslauriers ]
  * SECURITY UPDATE: denial of service via crafted query
    - debian/patches/CVE-2009-4008.patch: add checks to util/data/dname.c.
    - CVE-2009-4008
  * SECURITY UPDATE: denial of service via improperly aligned structures
    - debian/patches/CVE-2010-0969.patch: properly calculate sizes in
      util/net_help.c.
    - CVE-2010-0969

Date: Fri, 23 Dec 2011 08:07:43 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/lucid/+source/unbound/1.4.1-2ubuntu0.2
-------------- next part --------------
Format: 1.8
Date: Fri, 23 Dec 2011 08:07:43 -0500
Source: unbound
Binary: unbound unbound-host libunbound2 libunbound-dev
Architecture: source
Version: 1.4.1-2ubuntu0.2
Distribution: lucid-security
Urgency: high
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 libunbound-dev - static library, header files, and docs for libunbound
 libunbound2 - library implementing DNS resolution and validation
 unbound    - validating, recursive, caching DNS resolver
 unbound-host - reimplementation of the 'host' command
Launchpad-Bugs-Fixed: 907983
Changes: 
 unbound (1.4.1-2ubuntu0.2) lucid-security; urgency=high
 .
   [ Scott Kitterman ]
   * SECURITY UPDATE:
   * References: CVE 2011-4528, 2011-4869 (LP: #907983)
   * Add debian/patches/CVE-2011-4528 to fix DoS with DNSSEC
     - Patch from Debian security update
 .
   [ Marc Deslauriers ]
   * SECURITY UPDATE: denial of service via crafted query
     - debian/patches/CVE-2009-4008.patch: add checks to util/data/dname.c.
     - CVE-2009-4008
   * SECURITY UPDATE: denial of service via improperly aligned structures
     - debian/patches/CVE-2010-0969.patch: properly calculate sizes in
       util/net_help.c.
     - CVE-2010-0969
Checksums-Sha1: 
 b4ad90a35f4afafd50e332fbd00fbad387825fde 2005 unbound_1.4.1-2ubuntu0.2.dsc
 522688f708b6e027aac398d3ae7432933d57a6c7 8931 unbound_1.4.1-2ubuntu0.2.diff.gz
Checksums-Sha256: 
 90fe607a687c47d8d17a66e4cec9ba30ed894fe3f19856203abe37512c4e33cd 2005 unbound_1.4.1-2ubuntu0.2.dsc
 c3be8e058c3e9b14e2642648725e2f243d243c7deb5677ad3047e6af1db9d1a3 8931 unbound_1.4.1-2ubuntu0.2.diff.gz
Files: 
 c5e25659bfdacbe30288988c1990b815 2005 net optional unbound_1.4.1-2ubuntu0.2.dsc
 5a9995fab187bc005d523410aa460a71 8931 net optional unbound_1.4.1-2ubuntu0.2.diff.gz
Original-Maintainer: Robert S. Edmonds <edmonds at debian.org>


More information about the Lucid-changes mailing list