Update to version 9.6-ESV-R4-P3
authorDoug Barton <dougb@FreeBSD.org>
Wed, 6 Jul 2011 00:48:31 +0000 (00:48 +0000)
committerDoug Barton <dougb@FreeBSD.org>
Wed, 6 Jul 2011 00:48:31 +0000 (00:48 +0000)
commit7c9d9e417a7229e86c5f13a3976d970479885c65
treee2f081f6053b6868f97bb2f937aeb23d613958a3
parent09103e4808fbea43a916fa8bd5733ce9f5181e0e
parent8579a1921126cb7744dfeac1ca169ca4bad0895b
Update to version 9.6-ESV-R4-P3

ALL BIND USERS ARE ENCOURAGED TO UPGRADE IMMEDIATELY

This update addresses the following vulnerability:

CVE-2011-2464
=============
Severity: High
Exploitable: Remotely

Description:

A defect in the affected BIND 9 versions allows an attacker to remotely
cause the "named" process to exit using a specially crafted packet. This
defect affects both recursive and authoritative servers. The code location
of the defect makes it impossible to protect BIND using ACLs configured
within named.conf or by disabling any features at compile-time or run-time.

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-2464
https://www.isc.org/software/bind/advisories/cve-2011-2464
13 files changed:
contrib/bind9/CHANGES
contrib/bind9/bin/named/bind9.xsl.h
contrib/bind9/lib/dns/api
contrib/bind9/lib/dns/include/dns/masterdump.h
contrib/bind9/lib/dns/include/dns/rdataset.h
contrib/bind9/lib/dns/masterdump.c
contrib/bind9/lib/dns/message.c
contrib/bind9/lib/dns/ncache.c
contrib/bind9/lib/dns/rbtdb.c
contrib/bind9/lib/dns/rdataset.c
contrib/bind9/lib/dns/resolver.c
contrib/bind9/lib/dns/validator.c
contrib/bind9/version