LWN.net Logo

Fedora alert FEDORA-2008-6256 (bind)

From:  updates@fedoraproject.org
To:  fedora-package-announce@redhat.com
Subject:  [SECURITY] Fedora 9 Update: bind-9.5.0-33.P1.fc9
Date:  Wed, 09 Jul 2008 21:45:32 +0000
Message-ID:  <200807092145.m69LjTsu027591@bastion.fedora.phx.redhat.com>

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2008-6256 2008-07-09 19:45:20 -------------------------------------------------------------------------------- Name : bind Product : Fedora 9 Version : 9.5.0 Release : 33.P1.fc9 URL : http://www.isc.org/products/BIND/ Summary : The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server Description : BIND (Berkeley Internet Name Domain) is an implementation of the DNS (Domain Name System) protocols. BIND includes a DNS server (named), which resolves host names to IP addresses; a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating properly. -------------------------------------------------------------------------------- Update Information: 9.5.0-P1 release which contains fix for CVE-2008-1447. This update also fixes typo in bind-sdb summary and fixes parsing of inner ACLs. -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 8 2008 Adam Tkac <atkac redhat com> 32:9.5.0-33.P1 - 9.5.0-P1 release (CVE-2008-1447) - fixed typo in bind-sdb summary (#454436) * Wed Jun 18 2008 Adam Tkac <atkac redhat com> 32:9.5.0-32.2 - parse inner acls correctly (#450995) * Thu May 29 2008 Adam Tkac <atkac redhat com> 32:9.5.0-32.1 - 9.5.0 final - bind-9.5-initialize.patch merged to upstream * Thu May 22 2008 Adam Tkac <atkac redhat com> 32:9.5.0-32.rc1 - 9.5.0rc1 release - bind-9.5-libcap.patch merged to upstream - initialize memory in ACL code correctly (#446848) * Tue May 20 2008 Adam Tkac <atkac redhat com> 32:9.5.0-31.1.b3 - bind-chroot now depends on bind (#446477) * Tue May 13 2008 Adam Tkac <atkac redhat com> 32:9.5.0-31.b3 - reverted "any" patch, upstream says not needed - log EDNS failure only when we really switch to plain EDNS (#275091) - detect configuration file better * Tue May 6 2008 Adam Tkac <atkac redhat com> 32:9.5.0-30.1.b3 - addresses 0.0.0.0 and ::0 really match any (#275091, comment #28) * Mon May 5 2008 Adam Tkac <atkac redhat com> 32:9.5.0-30.b3 - 9.5.0b3 release - dropped patches (upstream) - bind-9.5.0-generate-xml.patch - bind-9.5-transfer-segv.patch - bind-9.5-mudflap.patch - updated bind-9.5-libcap.patch - added bind-9.5-recv-race.patch from F8 branch (#400461) * Wed Apr 2 2008 Adam Tkac <atkac redhat com> 32:9.5.0-29.3.b2 - fixed named.conf.sample file (#437569) * Fri Mar 14 2008 Adam Tkac <atkac redhat com> 32:9.5.0-29.2.b2 - fixed URLs * Mon Feb 25 2008 Adam Tkac <atkac redhat com> 32:9.5.0-29.1.b2 - BuildRequires cleanup -------------------------------------------------------------------------------- References: [ 1 ] Bug #449345 - CVE-2008-1447 implement source UDP port randomization (CERT VU#800113) https://bugzilla.redhat.com/show_bug.cgi?id=449345 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update bind' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at http://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list Fedora-package-announce@redhat.com http://www.redhat.com/mailman/listinfo/fedora-package-ann...


(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds