LWN.net Logo

Fedora alert FEDORA-2008-0903 (bind)

From:  updates@fedoraproject.org
To:  fedora-package-announce@redhat.com
Subject:  [SECURITY] Fedora 8 Update: bind-9.5.0-23.b1.fc8
Date:  Tue, 22 Jan 2008 09:01:26 -0700
Message-ID:  <200801221602.m0MG2IGR000424@bastion.fedora.phx.redhat.com>

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2008-0903 2008-01-22 05:40:32 -------------------------------------------------------------------------------- Name : bind Product : Fedora 8 Version : 9.5.0 Release : 23.b1.fc8 URL : http://www.isc.org/products/BIND/ Summary : The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server Description : BIND (Berkeley Internet Name Domain) is an implementation of the DNS (Domain Name System) protocols. BIND includes a DNS server (named), which resolves host names to IP addresses; a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating properly. -------------------------------------------------------------------------------- Update Information: - CVE-2008-0122, libbind.so off-by-one buffer overflow, very low severity -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 21 2008 Adam Tkac <atkac redhat com> 32:9.5.0-23.b1 - CVE-2008-0122 * Thu Dec 27 2007 Adam Tkac <atkac redhat com> 32:9.5.0-22.b1 - fixed initscript wait loop (#426382) - removed dependency on policycoreutils and libselinux (#426515) * Thu Dec 20 2007 Adam Tkac <atkac redhat com> 32:9.5.0-21.b1 - fixed regression caused by libidn2 patch (#426348) * Wed Dec 19 2007 Adam Tkac <atkac redhat com> 32:9.5.0-20.b1 - CVE-2007-6283 * Wed Dec 12 2007 Adam Tkac <atkac redhat com> 32:9.5.0-19.2.b1 - added dst/gssapi.h to -devel subpackage (#419091) - improved fix for (#417431) * Mon Dec 10 2007 Adam Tkac <atkac redhat com> 32:9.5.0-19.1.b1 - fixed shutdown with initscript when rndc doesn't work (#417431) - fixed IDN patch (#412241) * Thu Dec 6 2007 Adam Tkac <atkac redhat com> 32:9.5.0-19.b1 - 9.5.0b1 (#405281, #392491) * Mon Dec 3 2007 Adam Tkac <atkac redhat com> 32:9.5.0-18.3.a7 - removed bind-9.5-random_ports.patch because upstream doesn't like it. query-source{,-v6} is sufficient - bind-chroot-admin called restorecon on /proc filesystem (#405281) * Tue Nov 20 2007 Adam Tkac <atkac redhat com> 32:9.5.0-18.2.a7 - use system port selector instead ISC's (#391931) * Mon Nov 19 2007 Adam Tkac <atkac redhat com> 32:9.5.0-18.a7 - removed statement from initscript which passes -D to named * Thu Nov 15 2007 Adam Tkac <atkac redhat com> 32:9.5.0-17.a7 - 9.5.0a7 - dropped patches (upstream) - bind-9.5-update.patch - bind-9.5-pool_badfree.patch - bind-9.5-_res_errno.patch * Thu Nov 15 2007 Adam Tkac <atkac redhat com> 32:9.5.0-16.3.a6 - added bind-sdb again, contains SDB modules and DLZ modules - bind-9.3.1rc1-sdb.patch replaced by bind-9.5-sdb.patch * Mon Nov 12 2007 Adam Tkac <atkac redhat com> 32:9.5.0-16.2.a6 - removed Requires: openldap, postgresql, mysql, db4, unixODBC (#374261) - new L.ROOT-SERVERS.NET address * Mon Oct 29 2007 Adam Tkac <atkac redhat com> 32:9.5.0-16.1.a6 - completely disable DBUS (#339191) -------------------------------------------------------------------------------- Updated packages: fb5244aefc6d70ba5e93a3ac3acf32714ef2fc5b bind-debuginfo-9.5.0-23.b1.fc8.ppc64.rpm 60debb2788f9457a5cedd3c6e653f9b686f1571e bind-chroot-9.5.0-23.b1.fc8.ppc64.rpm 8d01da352038f28e51b48a3a5688565d7733b5f9 bind-devel-9.5.0-23.b1.fc8.ppc64.rpm 82d201cb452c62db6a7a396ad025dc3f30ac2f5a bind-utils-9.5.0-23.b1.fc8.ppc64.rpm efa2bbaa07ba73e3e57dad5f043fb54b88f83b19 bind-libs-9.5.0-23.b1.fc8.ppc64.rpm 65a260c4d44785e19fecd77cd2d75bd4aedc7c9d bind-sdb-9.5.0-23.b1.fc8.ppc64.rpm c3a1f2cbef18927f9e83cb0f8a2b912e61d1579f bind-9.5.0-23.b1.fc8.ppc64.rpm 910129012e770e6ad5445f431cafed72fdc85c23 bind-debuginfo-9.5.0-23.b1.fc8.i386.rpm 8a277f18d163eee3e70a8d8fae0e7946078f62d6 bind-chroot-9.5.0-23.b1.fc8.i386.rpm aff534e0833fb10f66b72dc0709d9cc7964a3637 bind-devel-9.5.0-23.b1.fc8.i386.rpm 37aefb7f35fe112974b29f14fd323f7c566e4b6c bind-utils-9.5.0-23.b1.fc8.i386.rpm d3c7f6e3115537d44471f5797a7a971e6792cf6a bind-libs-9.5.0-23.b1.fc8.i386.rpm 6639746ca6bbb4fb7e6887cdfb76318e8ae83eff bind-sdb-9.5.0-23.b1.fc8.i386.rpm 804514179af1af13647687e3a6d165b4b0c01772 bind-9.5.0-23.b1.fc8.i386.rpm 92b30fe2e271fe95d476e172cb7b772e5306b352 bind-sdb-9.5.0-23.b1.fc8.x86_64.rpm cedbdafe1bde3430c017cf775565946a3cd683d2 bind-9.5.0-23.b1.fc8.x86_64.rpm 9ed1bd945891b5f6d86ef9f1fc9f1244aa1515df bind-debuginfo-9.5.0-23.b1.fc8.x86_64.rpm 2f6aef22420c5dcdb121d71f854e3e95d7c57ee1 bind-devel-9.5.0-23.b1.fc8.x86_64.rpm ed2742ebc4c06295b24f1e23b00f22d63270fb52 bind-utils-9.5.0-23.b1.fc8.x86_64.rpm ceb43c573a915689c949565c816560dcc6f96e4a bind-libs-9.5.0-23.b1.fc8.x86_64.rpm 4a87657f8d8ba57eee12c3f32081f86b495f2891 bind-chroot-9.5.0-23.b1.fc8.x86_64.rpm 175460a553be00f10750494ef3967db2ee384ff6 bind-debuginfo-9.5.0-23.b1.fc8.ppc.rpm 4b78bf1aa4ce691bba29e4ec6303bf735be3cc5a bind-chroot-9.5.0-23.b1.fc8.ppc.rpm 247b97d9125c58e8fe393665ecc052d24b486830 bind-devel-9.5.0-23.b1.fc8.ppc.rpm 402fc98b7534f16b7c953ae24c0403445cc60370 bind-utils-9.5.0-23.b1.fc8.ppc.rpm b462349332ec8933e8f2009091976bfc171a42e0 bind-libs-9.5.0-23.b1.fc8.ppc.rpm 76e0010bf14db7b2c759232730bafdf44419f007 bind-sdb-9.5.0-23.b1.fc8.ppc.rpm d879ca6484ea44cc6d923276e50132ed498f8973 bind-9.5.0-23.b1.fc8.ppc.rpm 6f9947ad1dd5ad1d1c3d4f3cf850ccf030851f24 bind-9.5.0-23.b1.fc8.src.rpm This update can be installed with the "yum" update program. Use su -c 'yum update bind' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list Fedora-package-announce@redhat.com http://www.redhat.com/mailman/listinfo/fedora-package-ann...


(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds