User: Password:
|
|
Subscribe / Log in / New account

Fedora alert FEDORA-2013-4533 (bind)

From:  updates@fedoraproject.org
To:  package-announce@lists.fedoraproject.org
Subject:  [SECURITY] Fedora 17 Update: bind-9.9.2-7.P2.fc17
Date:  Sun, 07 Apr 2013 00:25:01 +0000
Message-ID:  <20130407002501.AE29920A15@bastion01.phx2.fedoraproject.org>
Archive-link:  Article, Thread

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2013-4533 2013-03-29 00:54:16 -------------------------------------------------------------------------------- Name : bind Product : Fedora 17 Version : 9.9.2 Release : 7.P2.fc17 URL : http://www.isc.org/products/BIND/ Summary : The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server Description : BIND (Berkeley Internet Name Domain) is an implementation of the DNS (Domain Name System) protocols. BIND includes a DNS server (named), which resolves host names to IP addresses; a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating properly. -------------------------------------------------------------------------------- Update Information: Bind-dyndb-ldap was updated to upstream version 2.6. Fixed BIND packages contain dns/rrl.h header necessary for building bind-dyndb-ldap. Fixed CVE-2013-2266. -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 27 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.2-7.P2 - New upstream patch version fixing CVE-2013-2266 (#928032) * Wed Mar 6 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.2-6.P1 - Fix Makefile.in to include header added by rate limiting patch (#918330) * Mon Feb 18 2013 Adam Tkac <atkac redhat com> 32:9.9.2-5.P1 - include rate limiting patch * Tue Jan 29 2013 Tomas Hozza <thozza@redhat.com> 32:9.9.2-4.P1 - Corrected IP addresses in named.ca (#901741) - mount/umount /var/named in setup-named-chroot.sh as the last one (#904666) * Wed Dec 5 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.2-3.P1 - update to bind-9.9.2-P1 * Thu Oct 11 2012 Adam Tkac <atkac redhat com> 32:9.9.2-2 - install isc/stat.h * Thu Oct 11 2012 Adam Tkac <atkac redhat com> 32:9.9.2-1 - update to 9.9.2 - bind97-rh714049.patch has been dropped - patches merged - bind98-rh816164.patch * Mon Sep 24 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-10.P3 - Fixed last line in chroot %postun script (#859687) * Thu Sep 13 2012 Adam Tkac <atkac redhat com> 32:9.9.1-9.P3 - update to 9.9.1-P3 * Wed Aug 8 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-8.P2 - Changed PrivateTmp to "false" in *-chroot.service unit files (#825869) * Wed Aug 1 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-7.P2 - Fixed bind-devel multilib conflict (#478718) * Mon Jul 30 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-6.P2 - Fixed bad path to systemctl in /etc/NetworkManager/dispatcher.d/13-named (#844047) * Thu Jul 26 2012 Adam Tkac <atkac redhat com> 32:9.9.1-5.P2 - update to 9.9.1-P2 * Wed Jul 18 2012 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 32:9.9.1-4.P1 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild * Wed Jul 11 2012 Ville Skyttä <ville.skytta@iki.fi> - 32:9.9.1-3.P1 - Avoid shell invocation and dep for -libs-lite %postun. * Mon Jun 4 2012 Adam Tkac <atkac redhat com> 32:9.9.1-2.P1 - update to 9.9.1-P1 (CVE-2012-1667) * Thu May 24 2012 Adam Tkac <atkac redhat com> 32:9.9.1-1 - update to 9.9.1 - bind99-coverity.patch merged - bind-9.5-overflow.patch merged * Mon May 7 2012 Adam Tkac <atkac redhat com> 32:9.9.0-6 - nslookup: return non-zero exit code when fail to get answer (#816164) * Thu Apr 26 2012 Adam Tkac <atkac redhat com> 32:9.9.0-5 - initscript: don't umount /var/named when didn't mount it -------------------------------------------------------------------------------- References: [ 1 ] Bug #928027 - CVE-2013-2266 bind: libdns regular expressions excessive resource consumption DoS https://bugzilla.redhat.com/show_bug.cgi?id=928027 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update bind' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-...


(Log in to post comments)


Copyright © 2017, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds