-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 23 Jul 2024 15:15:18 +0200 Source: bind9 Binary: bind9 bind9-dbgsym bind9-dev bind9-dnsutils bind9-dnsutils-dbgsym bind9-host bind9-host-dbgsym bind9-libs bind9-libs-dbgsym bind9-utils bind9-utils-dbgsym Architecture: ppc64el Version: 1:9.16.50-1~deb11u1 Distribution: bullseye-security Urgency: high Maintainer: ppc64el Build Daemon (ppc64el-conova-02) Changed-By: Ondřej Surý Description: bind9 - Internet Domain Name Server bind9-dev - Static Libraries and Headers used by BIND 9 bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.16.50-1~deb11u1) bullseye-security; urgency=high . * Backported from BIND 9.18.28 + CVE-2024-1737: It is possible to craft excessively large resource records sets, which have the effect of slowing down database processing. This has been addressed by adding a fixed limit to the number of records that can be stored per name and type in a cache or zone database. + CVE-2024-1737: It is possible to craft excessively large numbers of resource record types for a given owner name, which has the effect of slowing down database processing. This has been addressed by adding a fixed limit to the number of records that can be stored per name and type in a cache or zone database. + CVE-2024-1975: Validating DNS messages signed using the SIG(0) protocol could cause excessive CPU load, leading to a denial-of-service condition. Support for SIG(0) message validation was removed from this version. + CVE-2024-4076: Due to a logic error, lookups that triggered serving stale data and required lookups in local authoritative zone data could have resulted in an assertion failure. Checksums-Sha1: c9a272c9fdb986d8a8a44f64035980bc1d522908 523508 bind9-dbgsym_9.16.50-1~deb11u1_ppc64el.deb 7837df3e56c93ed74a9d20a6be3e05c42823de74 1937184 bind9-dev_9.16.50-1~deb11u1_ppc64el.deb 8efccd26af83a7a0bdeca7d3b953cdbc8fb7fe7b 291340 bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_ppc64el.deb 1f60c990007ac218ab98c43120d06a956fd50ae0 408852 bind9-dnsutils_9.16.50-1~deb11u1_ppc64el.deb a8c10b298c95da5ff75119cd1cb0102e0a18b697 82484 bind9-host-dbgsym_9.16.50-1~deb11u1_ppc64el.deb cb6af5f4b279dd382ed4aa4cb0b020ed3011816c 312892 bind9-host_9.16.50-1~deb11u1_ppc64el.deb 464b5959d0c25b828ed8c6f02f7d208b21569b45 3456792 bind9-libs-dbgsym_9.16.50-1~deb11u1_ppc64el.deb 9e3537a2e916e85e3854a181887b8089efc23b0b 1471316 bind9-libs_9.16.50-1~deb11u1_ppc64el.deb 3a1714c726b33755b2101634e3f50b12868f7393 270928 bind9-utils-dbgsym_9.16.50-1~deb11u1_ppc64el.deb d304c61f5404952f92b35b36f19d29c37231df2e 439216 bind9-utils_9.16.50-1~deb11u1_ppc64el.deb fc2fff445b84b032c5ff7eb6be72b07efcfb27ee 11026 bind9_9.16.50-1~deb11u1_ppc64el-buildd.buildinfo 369a13ee47d2b2ab796f18bf1ec0f6334015d7d4 503244 bind9_9.16.50-1~deb11u1_ppc64el.deb Checksums-Sha256: 3daac250c985c5bd9724fd07dad0b544c4bc907d19e7abd117e3c64fbe7c0452 523508 bind9-dbgsym_9.16.50-1~deb11u1_ppc64el.deb b377bda011f4f00dd403ebda492c88d88666169c1940534539bca7ecbca0f85f 1937184 bind9-dev_9.16.50-1~deb11u1_ppc64el.deb 176a9e2dd544ec4112fe80c0d166af315ec6ae023a6f89021ea4b3c29d3af068 291340 bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_ppc64el.deb 5987c434c494e391990a4a76f1d01731f287b1f9de323a6a9bee888f273be115 408852 bind9-dnsutils_9.16.50-1~deb11u1_ppc64el.deb 6a994f7c42ebc8141ad5e2c6481de4186e19603c82781fe4d3f67d9376a4d90c 82484 bind9-host-dbgsym_9.16.50-1~deb11u1_ppc64el.deb cd027d1b8be04d1c9d73093acf1bedd8ef988078ce9a970383801a4e23783a40 312892 bind9-host_9.16.50-1~deb11u1_ppc64el.deb ce0454e45ad4ecedf27d9e6b23c5f734f744a2b541ce93e765071d493d7176bf 3456792 bind9-libs-dbgsym_9.16.50-1~deb11u1_ppc64el.deb 614e0666d57268dc46522f41401ec7624b05362b4f962b437e97559865ef10c4 1471316 bind9-libs_9.16.50-1~deb11u1_ppc64el.deb ef838204b6d4d28f302d4719affad9b692c445e6c8f075ca3ae219d3fb954367 270928 bind9-utils-dbgsym_9.16.50-1~deb11u1_ppc64el.deb 5658bb1519eb5b0108c20ee6b2b86c9efa7f57333112a98e761401147b9fe8cd 439216 bind9-utils_9.16.50-1~deb11u1_ppc64el.deb 9f42f48eaac149aeb6d5a2e3d8cb3851e0c9bd3cc9cda0ea30ec489bceda2571 11026 bind9_9.16.50-1~deb11u1_ppc64el-buildd.buildinfo a1ddecf6203029a80162f47772fa91459180938e57bacc740bc7352d80ec5f09 503244 bind9_9.16.50-1~deb11u1_ppc64el.deb Files: f85eeb532ba294a09f520f99ea3e6291 523508 debug optional bind9-dbgsym_9.16.50-1~deb11u1_ppc64el.deb f7463a70b88f343dd131ac45afbac6fb 1937184 devel optional bind9-dev_9.16.50-1~deb11u1_ppc64el.deb 45062354e443792f58758b968cc80752 291340 debug optional bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_ppc64el.deb c42dd96d206659549ca9887a881936ca 408852 net standard bind9-dnsutils_9.16.50-1~deb11u1_ppc64el.deb b8f5368ade785a89d46d5fc0bb25ac7e 82484 debug optional bind9-host-dbgsym_9.16.50-1~deb11u1_ppc64el.deb 87d0d34a4966e779dc91bb9a8134f36d 312892 net standard bind9-host_9.16.50-1~deb11u1_ppc64el.deb cf0e0356242b388cdb637ceea8737b6f 3456792 debug optional bind9-libs-dbgsym_9.16.50-1~deb11u1_ppc64el.deb c01d3115a59f8e74e9c82be4a9ea4022 1471316 libs standard bind9-libs_9.16.50-1~deb11u1_ppc64el.deb 0875b1a658f396b19b0459757635ed2d 270928 debug optional bind9-utils-dbgsym_9.16.50-1~deb11u1_ppc64el.deb 0a49ba051e8133598f95a30453c548d8 439216 net optional bind9-utils_9.16.50-1~deb11u1_ppc64el.deb f2d26df30886a43e3f03100412ed4807 11026 net optional bind9_9.16.50-1~deb11u1_ppc64el-buildd.buildinfo 511088f65718cd8ff82a9ab834672de3 503244 net optional bind9_9.16.50-1~deb11u1_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEmyxOicioak1AZZAyyPVDLEOGa2QFAmaf8OUACgkQyPVDLEOG a2TOuRAAwZatdLb4IfgpO/dBxM3jL9srfYBAI8JwZSpEz7O4Gr7vvu9txbPIU1y0 Q0XKZAeiOQSoJ2YGFhSrCXchw2cAWf3JCZ9ChXjzIi0n0gmd1cGXsyuWFna91sBs jjLXaw90sBi9Y5anOPxewl6UlayIVZua4eii1wYBCG4JRGprRcft4AS3g8IMeuhA pnbRD/jmg7uScq/bugsnn3qEgEZSaL+uzaIF+7h84OBCDT550q6k8oLREg3E7Pir 6m3RD8DGrisNhGK+KqyIZdzj0PYX2fP5ivVbn4pSpoER/ZeTgnBd0VxCTUWxPvDK Or7UH3KKuKP6WypzKzMpAmw2ZEjGMmmO2zFr5IH4n5uXxAjY0XRq3+W+7brs3wDh h+mWorsTzXyiY6oKWaRyO6Wlbjyy1gryEnCjGCVTyp29BARkxFPbpYgJqBViC+x4 JCXQsA14i3xSEJPIPs+KJfbiwsbKqaYmHw6C6GXKDZgLY9tex46s87B6qsTH7SRo 3s+BdMk+EyEWv0XN/Ad6SnKRcM/c/ud8fEB+/XUkeryB0K9shSkhUYv7J7ppvnHu Zticg8nIXn8c/Ryd2AYzRGoGVYjxWnjwtIrcTcKnZojdin72yThkrQRvExTN8EpI U6bfBVU57WGLpifndottY4NHUmAkO17IZcbkax7OVCi7dswpybY= =2sJy -----END PGP SIGNATURE-----