UbuntuUpdates.org

Bugs fixes in "bind9"

Origin Bug number Title Date fixed
CVE CVE-2023-5517 A flaw in query-handling code can cause `named` to exit prematurely with an assertion failure when: - `nxdomain-redirect <domain>;` is configured, 2024-02-19
CVE CVE-2023-4408 The DNS message parsing code in `named` includes a section whose computational complexity is overly high. It does not cause problems for typical DNS 2024-02-19
CVE CVE-2023-50868 The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of se 2024-02-19
CVE CVE-2023-50387 Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU 2024-02-19
CVE CVE-2023-6516 To keep its cache database efficient, `named` running as a recursive resolver occasionally attempts to clean up the database. It uses several methods 2024-02-19
CVE CVE-2023-5517 A flaw in query-handling code can cause `named` to exit prematurely with an assertion failure when: - `nxdomain-redirect <domain>;` is configured, 2024-02-19
CVE CVE-2023-4408 The DNS message parsing code in `named` includes a section whose computational complexity is overly high. It does not cause problems for typical DNS 2024-02-19
CVE CVE-2023-50868 The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of se 2024-02-19
CVE CVE-2023-50387 Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU 2024-02-19
CVE CVE-2023-6516 To keep its cache database efficient, `named` running as a recursive resolver occasionally attempts to clean up the database. It uses several methods 2024-02-19
CVE CVE-2023-5517 A flaw in query-handling code can cause `named` to exit prematurely with an assertion failure when: - `nxdomain-redirect <domain>;` is configured, 2024-02-19
CVE CVE-2023-4408 The DNS message parsing code in `named` includes a section whose computational complexity is overly high. It does not cause problems for typical DNS 2024-02-19
Launchpad 2032650 Add DEP8 tests for bind-dyndb-ldap integration 2023-10-26
Launchpad 2015176 Ubuntu 22.04.2, nsupdate stopped recognizing HMAC-MD5 key after update from 1:9.18.1-1ubuntu1.3 to 1:9.18.12-0ubuntu0.22.04.1 2023-10-26
Launchpad 2028413 MRE updates of bind9 for focal, jammy and lunar 2023-10-26
Launchpad 2032650 Add DEP8 tests for bind-dyndb-ldap integration 2023-10-26
Launchpad 2015176 Ubuntu 22.04.2, nsupdate stopped recognizing HMAC-MD5 key after update from 1:9.18.1-1ubuntu1.3 to 1:9.18.12-0ubuntu0.22.04.1 2023-10-26
Launchpad 2028413 MRE updates of bind9 for focal, jammy and lunar 2023-10-26
CVE CVE-2023-3341 A stack exhaustion flaw in control channel code may cause named to terminate unexpectedly 2023-09-29
CVE CVE-2023-2911 Exceeding the recursive-clients quota may cause named to terminate unexpectedly when stale-answer-client-timeout is set to 0 2023-09-29



About   -   Send Feedback to @ubuntu_updates