Pop-Up Thingie

>>> Magnum BBS <<<
  • Home
  • Forum
  • Files
  • Log in

  1. Forum
  2. Usenet
  3. LINUX.DEBIAN.ANNOUNCE.SEC
  • [SECURITY] [DSA 1847-1] New bind9 packages fix denial of service (1/6)

    From Florian Weimer@1:229/2 to All on Wed Jul 29 09:30:17 2009
    From: [email protected]

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    - ------------------------------------------------------------------------ Debian Security Advisory DSA-1847-1 [email protected] http://www.debian.org/security/ Florian Weimer
    July 29, 2009 http://www.debian.org/security/faq
    - ------------------------------------------------------------------------

    Package : bind9
    Vulnerability : improper assert
    Problem type : remote
    Debian-specific: no
    CVE Id(s) : CVE-2009-0696
    CERT advisory : VU#725188
    Debian Bug : 538975

    It was discovered that the BIND DNS server terminates when processing a specially crafted dynamic DNS update. This vulnerability affects all
    BIND servers which serve at least one DNS zone authoritatively, as a
    master, even if dynamic updates are not enabled. The default Debian configuration for resolvers includes several authoritative zones, too,
    so resolvers are also affected by this issue unless these zones have
    been removed.

    For the old stable distribution (etch), this problem has been fixed in
    version 9.3.4-2etch5.

    For the stable distribution (lenny), this problem has been fixed in
    version 9.5.1.dfsg.P3-1.

    For the unstable distribution (sid), this problem has been fixed in
    version 1:9.6.1.dfsg.P1-1.

    We recommend that you upgrade your bind9 packages.

    Upgrade instructions
    - --------------------

    wget url
    will fetch the file for you
    dpkg -i file.deb
    will install the referenced file.

    If you are using the apt-get package manager, use the line for
    sources.list as given below:

    apt-get update
    will update the internal database
    apt-get upgrade
    will install corrected packages

    You may use an automated update by adding the resources from the
    footer to the proper configuration.


    Debian GNU/Linux 4.0 alias etch
    - -------------------------------

    Source archives:

    http://security.debian.org/pool/updates/main/b/bind9/bind9_9.3.4-2etch5.diff.gz
    Size/MD5 checksum: 302807 d58923a064b84f21ed5c10e2ffc44bfc
    http://security.debian.org/pool/updates/main/b/bind9/bind9_9.3.4-2etch5.dsc
    Size/MD5 checksum: 1197 d1a95e7520896c321241e2f3350c9a19
    http://security.debian.org/pool/updates/main/b/bind9/bind9_9.3.4.orig.tar.gz
    Size/MD5 checksum: 4043577 198181d47c58a0a9c0265862cd5557b0

    Architecture independent packages:

    http://security.debian.org/pool/updates/main/b/bind9/bind9-doc_9.3.4-2etch5_all.deb
    Size/MD5 checksum: 187662 8291dca5aca59a2b86417247e19e7e14

    amd64 architecture (AMD x86_64 (AMD64))

    http://security.debian.org/pool/updates/main/b/bind9/libisccc0_9.3.4-2etch5_amd64.deb
    Size/MD5 checksum: 97070 c40d4f4c024e0a8f7ef63700b48fe6f1
    http://security.debian.org/pool/updates/main/b/bind9/libdns22_9.3.4-2etch5_amd64.deb
    Size/MD5 checksum: 552696 808b613129afc50911014242adb41724
    http://security.debian.org/pool/updates/main/b/bind9/libbind9-0_9.3.4-2etch5_amd64.deb
    Size/MD5 checksum: 96290 3c47488088bffe8efe2445619b21de94
    http://security.debian.org/pool/updates/main/b/bind9/bind9-host_9.3.4-2etch5_amd64.deb
    Size/MD5 checksum: 117160 70d1df4da01977d952258afc695c5fb2
    http://security.debian.org/pool/updates/main/b/bind9/libisc11_9.3.4-2etch5_amd64.deb
    Size/MD5 checksum: 187822 d8263b75b2750324e18d3539aa002415
    http://security.debian.org/pool/updates/main/b/bind9/liblwres9_9.3.4-2etch5_amd64.deb
    Size/MD5 checksum: 115010 7788e7bd6b8ab327dd6d7a4678065ad2
    http://security.debian.org/pool/updates/main/b/bind9/libisccfg1_9.3.4-2etch5_amd64.deb
    Size/MD5 checksum: 111440 86e9406ec8bac96ac2c8760b410bd91d
    http://security.debian.org/pool/updates/main/b/bind9/lwresd_9.3.4-2etch5_amd64.deb
    Size/MD5 checksum: 224570 8611e1920610ba9f2d6b08255ab43a34
    http://security.debian.org/pool/updates/main/b/bind9/bind9_9.3.4-2etch5_amd64.deb
    Size/MD5 checksum: 317734 d92e1b3fa83f554592b621626a287e5d
    http://security.debian.org/pool/updates/main/b/bind9/libbind-dev_9.3.4-2etch5_amd64.deb
    Size/MD5 checksum: 1107958 fc3739b06eefc491780b4a78b29675d5
    http://security.debian.org/pool/updates/main/b/bind9/dnsutils_9.3.4-2etch5_amd64.deb
    Size/MD5 checksum: 190916 7095039b2eb4335d878e669bfa56eeb1

    hppa architecture (HP PA RISC)

    http://security.debian.org/pool/updates/main/b/bind9/libbind-dev_9.3.4-2etch5_hppa.deb
    Size/MD5 checksum: 1260850 894b1ec4f8b66d8c04c17526bd580600
    http://security.debian.org/pool/updates/main/b/bind9/dnsutils_9.3.4-2etch5_hppa.deb
    Size/MD5 checksum: 188420 96aa3636a3d7075d75f8a257166b9a5c
    http://security.debian.org/pool/updates/main/b/bind9/libisccfg1_9.3.4-2etch5_hppa.deb
    Size/MD5 checksum: 113176 5a7408d6151b5752e834620dd703dcce
    http://security.debian.org/pool/updates/main/b/bind9/lwresd_9.3.4-2etch5_hppa.deb
    Size/MD5 checksum: 217598 0c845420b5d4968f3364b96e6684f45f
    http://security.debian.org/pool/updates/main/b/bind9/liblwres9_9.3.4-2etch5_hppa.deb
    Size/MD5 checksum: 114376 12f36f415d4c71e5bd77abb6fb49602a
    http://security.debian.org/pool/updates/main/b/bind9/bind9_9.3.4-2etch5_hppa.deb
    Size/MD5 checksum: 313948 4efc5d183d8ccb654fbe01454d26f2e6
    http://security.debian.org/pool/updates/main/b/bind9/libbind9-0_9.3.4-2etch5_hppa.deb
    Size/MD5 checksum: 96792 55d55ed2b215fd55752508ea3cfe9f02
    http://security.debian.org/pool/updates/main/b/bind9/bind9-host_9.3.4-2etch5_hppa.deb
    Size/MD5 checksum: 115866 1a0e6b9a6a4b8e38b6e2601039f09897
    http://security.debian.org/pool/updates/main/b/bind9/libisc11_9.3.4-2etch5_hppa.deb
    Size/MD5 checksum: 185656 4559ec9ad0aaa3b4b18383e6ca6e5b0f
    http://security.debian.org/pool/updates/main/b/bind9/libisccc0_9.3.4-2etch5_hppa.deb
    Size/MD5 checksum: 96610 c16a367a3a241c4b7e47f402b56ca018
    http://security.debian.org/pool/updates/main/b/bind9/libdns22_9.3.4-2etch5_hppa.deb
    Size/MD5 checksum: 543438 fcb50e06d47d355110350eaf096de50a

    i386 architecture (Intel ia32)

    http://security.debian.org/pool/updates/main/b/bind9/libisc11_9.3.4-2etch5_i386.deb
    Size/MD5 checksum: 170374 b7d3e4a9defb5da1a54efb460bebf1b3
    http://security.debian.org/pool/updates/main/b/bind9/libbind-dev_9.3.4-2etch5_i386.deb
    Size/MD5 checksum: 995354 523bfb562b342c75ede6aa795b8ce600
    http://security.debian.org/pool/updates/main/b/bind9/bind9-host_9.3.4-2etch5_i386.deb

    [continued in next message]

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)
  • Who's Online

  • System Info

    Sysop: Keyop
    Location: Huddersfield, West Yorkshire, UK
    Users: 714
    Nodes: 16 (2 / 14)
    Uptime: 140:04:26
    Calls: 12,087
    Files: 14,998
    Messages: 6,517,419

© >>> Magnum BBS <<<, 2026