mbox

bind: Update to 9.10.3-P2

Message ID 1451172013-18852-1-git-send-email-matthias.fischer@ipfire.org
State Accepted
Commit 9977da131b2d2e560057b79db714a987977026b4
Headers

Message

Matthias Fischer Dec. 27, 2015, 10:20 a.m. UTC
  Changelog:

[security]
Update allowed OpenSSL versions as named is potentially
vulnerable to CVE-2015-3193.

[maint]
H.ROOT-SERVERS.NET is 198.97.190.53 and 2001:500:1::53. [RT #40556]

[security]
Insufficient testing when parsing a message allowed
records with an incorrect class to be be accepted,
triggering a REQUIRE failure when those records
were subsequently cached. (CVE-2015-8000) [RT #40987]

[security]
Address fetch context reference count handling error
on socket error. (CVE-2015-8461) [RT#40945]

Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org>
---
 lfs/bind | 4 ++--
 1 file changed, 2 insertions(+), 2 deletions(-)
  

Comments

Michael Tremer Dec. 29, 2015, 1:39 a.m. UTC | #1
Merged.

On Sun, 2015-12-27 at 00:20 +0100, Matthias Fischer wrote:
> Changelog:
> 
> [security]
> Update allowed OpenSSL versions as named is potentially
> vulnerable to CVE-2015-3193.
> 
> [maint]
> H.ROOT-SERVERS.NET is 198.97.190.53 and 2001:500:1::53. [RT #40556]
> 
> [security]
> Insufficient testing when parsing a message allowed
> records with an incorrect class to be be accepted,
> triggering a REQUIRE failure when those records
> were subsequently cached. (CVE-2015-8000) [RT #40987]
> 
> [security]
> Address fetch context reference count handling error
> on socket error. (CVE-2015-8461) [RT#40945]
> 
> Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org>
> ---
>  lfs/bind | 4 ++--
>  1 file changed, 2 insertions(+), 2 deletions(-)
> 
> diff --git a/lfs/bind b/lfs/bind
> index 6480798..b0d5185 100644
> --- a/lfs/bind
> +++ b/lfs/bind
> @@ -25,7 +25,7 @@
>  
>  include Config
>  
> -VER        = 9.10.3
> +VER        = 9.10.3-P2
>  
>  THISAPP    = bind-$(VER)
>  DL_FILE    = $(THISAPP).tar.gz
> @@ -43,7 +43,7 @@ objects = $(DL_FILE)
>  
>  $(DL_FILE) = $(DL_FROM)/$(DL_FILE)
>  
> -$(DL_FILE)_MD5 = d8cbf04a62a139a841d4bf878087a555
> +$(DL_FILE)_MD5 = 672dd3c2796b12ac8440f55bcaecfa82
>  
>  install : $(TARGET)
>