From f17cebd7c5cae101a80d768ff984cb4f99dbe6f6374342e9bc2b0fdaaabf4766 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Lars=20M=C3=BCller?= Date: Tue, 22 Sep 2015 20:15:47 +0000 Subject: [PATCH] Accepting request 332971 from home:msmeissn:branches:network - Update to version 9.10.2-P4 * An incorrect boundary boundary check in the OPENPGPKEY rdatatype could trigger an assertion failure. (CVE-2015-5986) [RT #40286] (bsc#944107) * A buffer accounting error could trigger an assertion failure when parsing certain malformed DNSSEC keys. (CVE-2015-5722) [RT #40212] (bsc#944066) OBS-URL: https://build.opensuse.org/request/show/332971 OBS-URL: https://build.opensuse.org/package/show/network/bind?expand=0&rev=176 --- bind-9.10.2-P3.tar.gz | 3 --- bind-9.10.2-P3.tar.gz.asc | 11 ----------- bind-9.10.2-P4.tar.gz | 3 +++ bind-9.10.2-P4.tar.gz.asc | 11 +++++++++++ bind.changes | 11 +++++++++++ bind.spec | 7 ++++--- named.root | 4 ++-- 7 files changed, 31 insertions(+), 19 deletions(-) delete mode 100644 bind-9.10.2-P3.tar.gz delete mode 100644 bind-9.10.2-P3.tar.gz.asc create mode 100644 bind-9.10.2-P4.tar.gz create mode 100644 bind-9.10.2-P4.tar.gz.asc diff --git a/bind-9.10.2-P3.tar.gz b/bind-9.10.2-P3.tar.gz deleted file mode 100644 index 91866c1..0000000 --- a/bind-9.10.2-P3.tar.gz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:78079a66dda455ffecfe93ef72d1ffc947f17b1c453d55ec06b860b49a5e1d4a -size 8469831 diff --git a/bind-9.10.2-P3.tar.gz.asc b/bind-9.10.2-P3.tar.gz.asc deleted file mode 100644 index 5d4141e..0000000 --- a/bind-9.10.2-P3.tar.gz.asc +++ /dev/null @@ -1,11 +0,0 @@ ------BEGIN PGP SIGNATURE----- -Comment: GPGTools - http://gpgtools.org - -iQEcBAABAgAGBQJVrSxkAAoJEG+m68mRGkwC/MgIAJajjc2WhbJ+MKtLB0JughkZ -YLykCptyAz5YD4Uit5GWEkTqJbTqap7scfLCQiqQHYfUBfHwZ3BYtw6HHmeGZmjC -oivNB6zHKVKAc9YDWkVDMbc9zXFxApKsdyU5YKs5vEW9ByxyMtaCTzU4+nRnDRLJ -pwlACuHeSKmMel3n4Wa/5ECPgiUEdi+nFXMq/O70yCzB4WDD6YVP9MsFYlXfvxiv -EdJ2Zr9m53VNOJOKmC7ipGca48CYcdM67rW+/XnMCHqZT9gZcfdUGO9l4qzodAUx -Hd6wj9kSMVe3hJ7bz/Z/Da+Jlsu8seu9aqaQUkJq28TY5wS7JjauK2c1MhTKcKo= -=9qke ------END PGP SIGNATURE----- diff --git a/bind-9.10.2-P4.tar.gz b/bind-9.10.2-P4.tar.gz new file mode 100644 index 0000000..4666325 --- /dev/null +++ b/bind-9.10.2-P4.tar.gz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:c00b21ec1def212957f28efe9d10aac52d6ec515e84fbf2c42143f5d71429cb8 +size 8471531 diff --git a/bind-9.10.2-P4.tar.gz.asc b/bind-9.10.2-P4.tar.gz.asc new file mode 100644 index 0000000..b2680e0 --- /dev/null +++ b/bind-9.10.2-P4.tar.gz.asc @@ -0,0 +1,11 @@ +-----BEGIN PGP SIGNATURE----- +Version: GnuPG v1.4.12 (NetBSD) + +iQEcBAABAgAGBQJV04QTAAoJEG+m68mRGkwCRvYH/19oF+kkXzg9V9Sdd2qrjrYf +PuFQQnEcP4Eodk+10i4AvW94K/5mVF5o0QAgLTpSpJpiMWyjwSWurD9/p663S2P2 +N5bjW+gcNhV4F4mMMNE4432WX4+rs8XB9b45t5YyvpyOL0u4mhn82TYY4WazPQEy +mmRAn81rUuRUdBATdwuIEGNpastYvAxCzNbZR2uyv/uH1Llbb7DHdW78Vh0M7hq3 +ypdm0jW5HQL3LLtX1Y3PFbMilfluCoWbreVz+I+/9WAYB5z4KspT3AJNDUWjhtZl +PeFxSbsHbSSD+ILSnGYB02lMum0YnVe5YFIHCTJXZIj53DtkzTF9xb70Q7tWyMY= +=3SxE +-----END PGP SIGNATURE----- diff --git a/bind.changes b/bind.changes index 41ab068..1961d09 100644 --- a/bind.changes +++ b/bind.changes @@ -1,3 +1,14 @@ +------------------------------------------------------------------- +Tue Sep 22 13:15:51 UTC 2015 - meissner@suse.com + +- Update to version 9.10.2-P4 + * An incorrect boundary boundary check in the OPENPGPKEY + rdatatype could trigger an assertion failure. + (CVE-2015-5986) [RT #40286] (bsc#944107) + * A buffer accounting error could trigger an + assertion failure when parsing certain malformed + DNSSEC keys. (CVE-2015-5722) [RT #40212] (bsc#944066) + ------------------------------------------------------------------- Wed Jul 29 19:24:40 UTC 2015 - lmuelle@suse.com diff --git a/bind.spec b/bind.spec index 2da9d20..8e66520 100644 --- a/bind.spec +++ b/bind.spec @@ -18,8 +18,8 @@ Name: bind %define pkg_name bind -%define pkg_vers 9.10.2-P3 -%define rpm_vers 9.10.2P3 +%define pkg_vers 9.10.2-P4 +%define rpm_vers 9.10.2P4 %define idn_vers 1.0 Summary: Domain Name System (DNS) Server (named) License: ISC @@ -34,7 +34,8 @@ Source4: %name.keyring Source1: vendor-files.tar.bz2 Source2: baselibs.conf Source9: ftp://ftp.internic.net/domain/named.root -Source40: http://www.venaas.no/ldap/bind-sdb/dnszone-schema.txt +# url http://www.venaas.no/ldap/bind-sdb/dnszone-schema.txt no longer exists... +Source40: dnszone-schema.txt Patch: configure.in.diff Patch1: Makefile.in.diff Patch4: perl-path.diff diff --git a/named.root b/named.root index a060308..5886a0f 100644 --- a/named.root +++ b/named.root @@ -9,8 +9,8 @@ ; on server FTP.INTERNIC.NET ; -OR- RS.INTERNIC.NET ; -; last update: November 05, 2014 -; related version of root zone: 2014110501 +; last update: May 23, 2015 +; related version of root zone: 2015052300 ; ; formerly NS.INTERNIC.NET ;