• [SECURITY] [DSA 3319-1] bind9 security update

    From Salvatore Bonaccorso@1:229/2 to All on Tue Jul 28 21:10:02 2015
    From: [email protected]

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-3319-1 [email protected] https://www.debian.org/security/ Salvatore Bonaccorso
    July 28, 2015 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : bind9
    CVE ID : CVE-2015-5477

    Jonathan Foote discovered that the BIND DNS server does not properly
    handle TKEY queries. A remote attacker can take advantage of this flaw
    to mount a denial of service via a specially crafted query triggering an assertion failure and causing BIND to exit.

    For the oldstable distribution (wheezy), this problem has been fixed
    in version 1:9.8.4.dfsg.P1-6+nmu2+deb7u6.

    For the stable distribution (jessie), this problem has been fixed in
    version 1:9.9.5.dfsg-9+deb8u2.

    We recommend that you upgrade your bind9 packages.

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: [email protected]
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1

    iQIcBAEBCgAGBQJVt9IHAAoJEAVMuPMTQ89E2jQP/A/iqAfLpZX9UIgmXpJR1o9C 48Ek21w6xWXPSHTlNDxxcoBrwaZ0jFOPEbipu3u4N3TQlYCheWL9csm5lJzzZK7Y rqTQnu+P4rolj27ZRsMeF8hr7FNob1iGwPT7210iGTDoZcieg+IN+Dt1EGCox+Fz TzoqPBdts/3Xdzr7kjwCZepPRwJ0INq6tQA7UiZ8iiLrhjcTwZ6S1Uc1ba2ca1Jb p7CJwe7PlKTRWegKixDoHg7LY4eg/WHmxlykzEBLLRkgd7YKW0NAXqlFM+7xEDm/ Gh1ChP91JpI6q+e9NwNWr7SM87qId2i3lczXM2VvBe/k9qfhLFpCoeeEouyWJR6+ BDQEn/QbsD4O+YXHoe7gdwXEnCPka86VMs8G85PEogZTmwk3EpRdUz8FWRaNEWbI QziI234zuotp/dp8GbNAmAQhA8L4VHZtCt2LNrqZ8jjTK+XhrSG7JY1TuSyWSnRT Z+IZrqJvoHXTNCjRBJoOjPdwwGqXoaOO0xLeyFWebAAShKUvPaRUaHnff2hTzJ+r 66SDArDSxMHRzEhcIdikpvo4TDq9/RsxBJMhVta+sF0DvhB+1BxUtbP7Fx1Xc3Nl GHYkix0NbB9XDkkol9zPiNpt+A8QET0BC8Lssot7RRUCtrv1+9QwaCgLKHqTUoIz /NCpPEZZRyxMe10AFOcv
    =2Af2
    -----END PGP SIGNATURE-----


    --
    To UNSUBSCRIBE, email to [email protected]
    with a subject of "unsubscribe". Trouble? Contact [email protected] Archive: https://lists.debian.org/[email protected]

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)