drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Denial of Service in BIND
Name: |
Denial of Service in BIND |
|
ID: |
FEDORA-2012-15965 |
|
Distribution: |
Fedora |
|
Plattformen: |
Fedora 17 |
|
Datum: |
Sa, 20. Oktober 2012, 10:46 |
|
Referenzen: |
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5166 |
|
Applikationen: |
BIND |
|
Originalnachricht |
Name : bind Product : Fedora 17 Version : 9.9.2 Release : 2.fc17 URL : http://www.isc.org/products/BIND/ Summary : The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server Description : BIND (Berkeley Internet Name Domain) is an implementation of the DNS (Domain Name System) protocols. BIND includes a DNS server (named), which resolves host names to IP addresses; a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating properly.
------------------------------------------------------------------------------- - Update Information:
Update to the latest BIND packages to fix CVE-2012-5166 and incorporate other fixes from upstream. Packages dhcp, bind-dyndb-ldap and dnsperf were rebuilt. ------------------------------------------------------------------------------- - ChangeLog:
* Thu Oct 11 2012 Adam Tkac <atkac redhat com> 32:9.9.2-2 - install isc/stat.h * Thu Oct 11 2012 Adam Tkac <atkac redhat com> 32:9.9.2-1 - update to 9.9.2 - bind97-rh714049.patch has been dropped - patches merged - bind98-rh816164.patch * Mon Sep 24 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-10.P3 - Fixed last line in chroot %postun script (#859687) * Thu Sep 13 2012 Adam Tkac <atkac redhat com> 32:9.9.1-9.P3 - update to 9.9.1-P3 * Wed Aug 8 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-8.P2 - Changed PrivateTmp to "false" in *-chroot.service unit files (#825869) * Wed Aug 1 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-7.P2 - Fixed bind-devel multilib conflict (#478718) * Mon Jul 30 2012 Tomas Hozza <thozza@redhat.com> 32:9.9.1-6.P2 - Fixed bad path to systemctl in /etc/NetworkManager/dispatcher.d/13-named (#844047) * Thu Jul 26 2012 Adam Tkac <atkac redhat com> 32:9.9.1-5.P2 - update to 9.9.1-P2 * Wed Jul 18 2012 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 32:9.9.1-4.P1 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild * Wed Jul 11 2012 Ville Skyttä <ville.skytta@iki.fi> - 32:9.9.1-3.P1 - Avoid shell invocation and dep for -libs-lite %postun. * Mon Jun 4 2012 Adam Tkac <atkac redhat com> 32:9.9.1-2.P1 - update to 9.9.1-P1 (CVE-2012-1667) * Thu May 24 2012 Adam Tkac <atkac redhat com> 32:9.9.1-1 - update to 9.9.1 - bind99-coverity.patch merged - bind-9.5-overflow.patch merged * Mon May 7 2012 Adam Tkac <atkac redhat com> 32:9.9.0-6 - nslookup: return non-zero exit code when fail to get answer (#816164) * Thu Apr 26 2012 Adam Tkac <atkac redhat com> 32:9.9.0-5 - initscript: don't umount /var/named when didn't mount it ------------------------------------------------------------------------------- - References:
[ 1 ] Bug #864273 - CVE-2012-5166 bind: Specially crafted DNS data can cause a lockup in named https://bugzilla.redhat.com/show_bug.cgi?id=864273 ------------------------------------------------------------------------------- -
This update can be installed with the "yum" update program. Use su -c 'yum update bind' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys ------------------------------------------------------------------------------- - _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-announce
|
|
|
|