[ubuntu/oracular-proposed] bind9 1:9.18.28-0ubuntu1 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Tue Jul 23 16:58:13 UTC 2024


bind9 (1:9.18.28-0ubuntu1) oracular; urgency=medium

  * Updated to 9.18.28 to fix multiple security issues.
    - CVE-2024-0760: A flood of DNS messages over TCP may make the server
      unstable
    - CVE-2024-1737: BIND's database will be slow if a very large number of
      RRs exist at the same name
    - CVE-2024-1975: SIG(0) can be used to exhaust CPU resources
    - CVE-2024-4076: Assertion failure when serving both stale cache data
      and authoritative zone content

Date: Tue, 16 Jul 2024 14:16:20 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/bind9/1:9.18.28-0ubuntu1
-------------- next part --------------
Format: 1.8
Date: Tue, 16 Jul 2024 14:16:20 -0400
Source: bind9
Built-For-Profiles: noudeb
Architecture: source
Version: 1:9.18.28-0ubuntu1
Distribution: oracular
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Changes:
 bind9 (1:9.18.28-0ubuntu1) oracular; urgency=medium
 .
   * Updated to 9.18.28 to fix multiple security issues.
     - CVE-2024-0760: A flood of DNS messages over TCP may make the server
       unstable
     - CVE-2024-1737: BIND's database will be slow if a very large number of
       RRs exist at the same name
     - CVE-2024-1975: SIG(0) can be used to exhaust CPU resources
     - CVE-2024-4076: Assertion failure when serving both stale cache data
       and authoritative zone content
Checksums-Sha1:
 2cb382588efa926c507eb485c724408f6bda4e10 3276 bind9_9.18.28-0ubuntu1.dsc
 409ea591b16c93e9518bc3b33b76f29f20498abb 5533340 bind9_9.18.28.orig.tar.xz
 4729d865371ae7a5fe34404a9dbd90c06b97384f 833 bind9_9.18.28.orig.tar.xz.asc
 d32603385dede840cb3d1a79b186a0cb414e28db 73672 bind9_9.18.28-0ubuntu1.debian.tar.xz
 e72aeb817e5b3950641e8d50fb0b028e8b359616 8222 bind9_9.18.28-0ubuntu1_source.buildinfo
Checksums-Sha256:
 2af64a69ecbcf22483136b8a9630d1e2f82fd1848bc864136122458e8af98e83 3276 bind9_9.18.28-0ubuntu1.dsc
 e7cce9a165f7b619eefc4832f0a8dc16b005d29e3890aed6008c506ea286a5e7 5533340 bind9_9.18.28.orig.tar.xz
 3ebd311e84fd18d87471dc6ccf01bad28cb22342ee6e3580a6ee876fda568415 833 bind9_9.18.28.orig.tar.xz.asc
 ce2eaea019bd467aff0ce5557ec3fe20169a82e21096df9a8b2054907cfea131 73672 bind9_9.18.28-0ubuntu1.debian.tar.xz
 e7ec2fcbfe652bedabb8fca705f6f3a84d4cc36eb78f02239917fc3853a5d4bc 8222 bind9_9.18.28-0ubuntu1_source.buildinfo
Files:
 4d1646e716c9b46e6a41e2f57dc062f6 3276 net optional bind9_9.18.28-0ubuntu1.dsc
 8fc27fb04e6760aee166a05c6ffd19d5 5533340 net optional bind9_9.18.28.orig.tar.xz
 70e77ec071859cd6b3a0868565b30a68 833 net optional bind9_9.18.28.orig.tar.xz.asc
 b0436725717f8c21a54a6eea743a7e1f 73672 net optional bind9_9.18.28-0ubuntu1.debian.tar.xz
 3f87aac49ebe66241d999e4bac2198d1 8222 net optional bind9_9.18.28-0ubuntu1_source.buildinfo
Original-Maintainer: Debian DNS Team <team+dns at tracker.debian.org>


More information about the oracular-changes mailing list