bind9 (1:9.7.3.dfsg-1ubuntu4.2) oneiric-security; urgency=low

  * SECURITY UPDATE: ghost domain names attack
    - lib/dns/rbtdb.c: Restrict the TTL of NS RRset to no more than that
      of the old NS RRset when replacing it.
    - Patch backported from 9.7.5.
    - CVE-2012-1033
  * SECURITY UPDATE: denial of service via zero length rdata handling
    - lib/dns/rdata.c,lib/dns/rdataslab.c: use sentinel pointer for
      duplicate rdata.
    - Patch backported from 9.7.6-P1.
    - CVE-2012-1667

Date: Mon, 04 Jun 2012 13:26:07 -0400
Changed-By: Marc Deslauriers <[email protected]>
Maintainer: Ubuntu Developers <[email protected]>
https://launchpad.net/ubuntu/oneiric/+source/bind9/1:9.7.3.dfsg-1ubuntu4.2
Format: 1.8
Date: Mon, 04 Jun 2012 13:26:07 -0400
Source: bind9
Binary: bind9 bind9utils bind9-doc host bind9-host libbind-dev libbind9-60 
libdns69 libisc62 liblwres60 libisccc60 libisccfg62 dnsutils lwresd
Architecture: source
Version: 1:9.7.3.dfsg-1ubuntu4.2
Distribution: oneiric-security
Urgency: low
Maintainer: Ubuntu Developers <[email protected]>
Changed-By: Marc Deslauriers <[email protected]>
Description: 
 bind9      - Internet Domain Name Server
 bind9-doc  - Documentation for BIND
 bind9-host - Version of 'host' bundled with BIND 9.X
 bind9utils - Utilities for BIND
 dnsutils   - Clients provided with BIND
 host       - Transitional package
 libbind-dev - Static Libraries and Headers used by BIND
 libbind9-60 - BIND9 Shared Library used by BIND
 libdns69   - DNS Shared Library used by BIND
 libisc62   - ISC Shared Library used by BIND
 libisccc60 - Command Channel Library used by BIND
 libisccfg62 - Config File Handling Library used by BIND
 liblwres60 - Lightweight Resolver Library used by BIND
 lwresd     - Lightweight Resolver Daemon
Changes: 
 bind9 (1:9.7.3.dfsg-1ubuntu4.2) oneiric-security; urgency=low
 .
   * SECURITY UPDATE: ghost domain names attack
     - lib/dns/rbtdb.c: Restrict the TTL of NS RRset to no more than that
       of the old NS RRset when replacing it.
     - Patch backported from 9.7.5.
     - CVE-2012-1033
   * SECURITY UPDATE: denial of service via zero length rdata handling
     - lib/dns/rdata.c,lib/dns/rdataslab.c: use sentinel pointer for
       duplicate rdata.
     - Patch backported from 9.7.6-P1.
     - CVE-2012-1667
Checksums-Sha1: 
 755312ae4ec6f87ff7d1cfa949597c69a36be706 2267 bind9_9.7.3.dfsg-1ubuntu4.2.dsc
 4a9b7183b1e8a62d0adafd643a4d44426a2838b0 519458 
bind9_9.7.3.dfsg-1ubuntu4.2.diff.gz
Checksums-Sha256: 
 dd355b584fccbf62c4dc66e59250ade1b16414f23a1ad5ed695e7b4c5bc17f80 2267 
bind9_9.7.3.dfsg-1ubuntu4.2.dsc
 9293f38b55382393e713eba4903d5d90b27ba1ab4487ac41e49524fce8c65c1f 519458 
bind9_9.7.3.dfsg-1ubuntu4.2.diff.gz
Files: 
 0ac0a7fa547d955d965c86a84a7de647 2267 net optional 
bind9_9.7.3.dfsg-1ubuntu4.2.dsc
 2aa4933be7dbe8f37253ebb9de3b6579 519458 net optional 
bind9_9.7.3.dfsg-1ubuntu4.2.diff.gz
Original-Maintainer: LaMont Jones <[email protected]>
-- 
Oneiric-changes mailing list
[email protected]
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/oneiric-changes

Reply via email to